CWE-320
95 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-320page 1 of 2
- CVE-2016-10467CRITICALCVSS 9.8EG 9.82018-04-18
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile and Snapdragon Mobile SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 615/16/SD 415, SD 617, SD 650/52, SD 800, SD 808, SD 820, and SD 820A, functio…
- CVE-2016-10421CRITICALCVSS 9.8EG 9.82018-04-18
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8909W, SD 210/SD 212/SD 205, SD 400, SD 410…
- CVE-2018-0124CRITICALCVSS 9.8EG 9.82018-02-22
A vulnerability in Cisco Unified Communications Domain Manager could allow an unauthenticated, remote attacker to bypass security protections, gain elevated privileges, and execute arbitrary code. The vulnerability is due to insecure key g…
- CVE-2015-0936CRITICALCVSS 9.8EG 9.82017-06-01
Ceragon FibeAir IP-10 have a default SSH public key in the authorized_keys file for the mateidu user, which allows remote attackers to obtain SSH access by leveraging knowledge of the private key.
- CVE-2015-4166CRITICALCVSS 9.8EG 9.82017-03-23
Cloudera Key Trustee Server before 5.4.3 does not store keys synchronously, which might allow attackers to have unspecified impact via vectors related to loss of an encryption key.
- CVE-2024-36391CRITICALCVSS 9.1EG 9.12024-06-02
MileSight DeviceHub - CWE-320: Key Management Errors may allow Authentication Bypass and Man-In-The-Middle Traffic
- CVE-2019-5672CRITICALCVSS 9.1EG 9.12019-04-11
NVIDIA Jetson TX1 and TX2 contain a vulnerability in the Linux for Tegra (L4T) operating system (on all versions prior to R28.3) where the Secure Shell (SSH) keys provided in the sample rootfs are not replaced by unique host keys after sam…
- CVE-2015-8542HIGHCVSS 8.8EG 8.82016-12-15
An issue was discovered in Open-Xchange Guard before 2.2.0-rev8. The "getprivkeybyid" API call is used to download a PGP Private Key for a specific user after providing authentication credentials. Clients provide the "id" and "cid" paramet…
- CVE-2026-90510HIGHCVSS 8.3EG 8.32026-09-13
A security vulnerability has been detected in dromara orion-visor up to 2.5.7. This affects the function HostKeyServiceImpl.encryptKey of the file orion-visor-modules/orion-visor-module-asset/orion-visor-module-asset-service/src/main/java/…
- CVE-2025-15107HIGHCVSS 8.1EG 8.12025-12-27
A security vulnerability has been detected in actiontech sqle up to 4.2511.0. The impacted element is an unknown function of the file sqle/utils/jwt.go of the component JWT Secret Handler. The manipulation of the argument JWTSecretKey lead…
- CVE-2025-11609HIGHCVSS 8.1EG 8.12025-10-11
A flaw has been found in code-projects Hospital Management System 1.0. Affected is the function session of the component express-session. This manipulation of the argument secret with the input secret causes use of hard-coded cryptographic…
- CVE-2025-5164HIGHCVSS 8.1EG 8.12025-05-26
A vulnerability has been found in PerfreeBlog 4.0.11 and classified as problematic. This vulnerability affects the function JwtUtil of the component JWT Handler. The manipulation leads to use of hard-coded cryptographic key . The attack c…
- CVE-2015-0839HIGHCVSS 8.1EG 8.12017-08-02
The hp-plugin utility in HP Linux Imaging and Printing (HPLIP) makes it easier for man-in-the-middle attackers to execute arbitrary code by leveraging use of a short GPG key id from a keyserver to verify print plugin downloads.
- CVE-2018-0732HIGHCVSS 7.5EG 8.02018-06-12
During key agreement in a TLS handshake using a DH(E) based ciphersuite a malicious server can send a very large prime value to the client. This will cause the client to spend an unreasonably long period of time generating a key for this p…
- CVE-2016-2880HIGHCVSS 7.8EG 7.82017-03-01
IBM QRadar 7.2 stores the encryption key used to encrypt the service account password which can be obtained by a local user. IBM Reference #: 1997340.
- CVE-2023-21652HIGHCVSS 7.7EG 7.72023-08-08
Cryptographic issue in HLOS as derived keys used to encrypt/decrypt information is present on stack after use.
- CVE-2026-5549HIGHCVSS 7.5EG 7.52026-04-05
A vulnerability was determined in Tenda AC10 16.03.10.10_multi_TDE01. Affected by this issue is some unknown functionality of the file /webroot_ro/pem/privkeySrv.pem of the component RSA 2048-bit Private Key Handler. Executing a manipulati…
- CVE-2021-26322HIGHCVSS 7.5EG 7.52021-11-16
Persistent platform private key may not be protected with a random IV leading to a potential “two time pad attack”.
- CVE-2019-9894HIGHCVSS 7.5EG 7.52019-03-21
A remotely triggerable memory overwrite in RSA key exchange in PuTTY before 0.71 can occur before host key verification.
- CVE-2017-13887HIGHCVSS 7.5EG 7.52019-01-11
In macOS High Sierra before 10.13.2, a logic issue existed in APFS when deleting keys during hibernation. This was addressed with improved state management.
- CVE-2015-0153HIGHCVSS 7.5EG 7.52018-04-12
D-Link DIR-815 devices with firmware before 2.07.B01 allow remote attackers to obtain sensitive information by leveraging cleartext storage of the wireless key.
- CVE-2018-9234HIGHCVSS 7.5EG 7.52018-04-04
GnuPG 2.2.4 and 2.2.5 does not enforce a configuration in which key certification requires an offline master Certify key, which results in apparently valid certifications that occurred only with access to a signing subkey.
- CVE-2015-7503HIGHCVSS 7.5EG 7.52017-10-10
Zend Framework before 2.4.9, zend-framework/zend-crypt 2.4.x before 2.4.9, and 2.5.x before 2.5.2 allows remote attackers to recover the RSA private key.
- CVE-2016-6879HIGHCVSS 7.5EG 7.52017-04-10
The X509_Certificate::allowed_usage function in botan 1.11.x before 1.11.31 might allow attackers to have unspecified impact by leveraging a call with more than one Key_Usage set in the enum value.
- CVE-2016-6886HIGHCVSS 7.5EG 7.52017-01-13
The pstm_reverse function in MatrixSSL before 3.8.4 allows remote attackers to cause a denial of service (invalid memory read and crash) via a (1) zero value or (2) the key's modulus for the secret key during RSA key exchange.
- CVE-2015-1316HIGHCVSS 6.4EG 7.52019-04-22
Juju Core's Joyent provider before version 1.25.5 uploads the user's private ssh key.
- CVE-2019-12621HIGHCVSS 7.4EG 7.42019-08-21
A vulnerability in Cisco HyperFlex Software could allow an unauthenticated, remote attacker to perform a man-in-the-middle attack. The vulnerability is due to insufficient key management. An attacker could exploit this vulnerability by obt…
- CVE-2013-2233HIGHCVSS 7.4EG 7.42018-05-04
Ansible before 1.2.1 makes it easier for remote attackers to conduct man-in-the-middle attacks by leveraging failure to cache SSH host keys.
- CVE-2026-105392HIGHCVSS 7.3EG 7.32026-10-05
A vulnerability has been found in Lybbn Django-Vue-Lyadmin up to 3.2.12. The impacted element is an unknown function of the file backend/application/settings.py of the component JWT Signing. The manipulation of the argument SECRET_KEY lead…
- CVE-2026-6580HIGHCVSS 7.3EG 7.32026-04-19
A security vulnerability has been detected in liangliangyy DjangoBlog up to 2.1.0.0. Affected is an unknown function of the file owntracks/views.py of the component Amap API Call Handler. Such manipulation of the argument key leads to use …
- CVE-2023-21626HIGHCVSS 7.1EG 7.12023-08-08
Cryptographic issue in HLOS due to improper authentication while performing key velocity checks using more than one key.
- CVE-2026-56254HIGHCVSS 7.0EG 7.02026-07-10
In @capgo/capacitor-updater (Cap-go/capgo) before 12.128.2, the end-to-end encryption scheme distributes the private key to each device that downloads the app. Because the public key can be derived from the private key, an attacker perform…
- CVE-2018-15397MEDIUMCVSS 6.8EG 6.82018-10-05
A vulnerability in the implementation of Traffic Flow Confidentiality (TFC) over IPsec functionality in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remo…
- CVE-2020-1688MEDIUMCVSS 6.5EG 6.52020-10-16
On Juniper Networks SRX Series and NFX Series, a local authenticated user with access to the shell may obtain the Web API service private key that is used to provide encrypted communication between the Juniper device and the authenticator …
- CVE-2017-2625MEDIUMCVSS 6.5EG 6.52018-07-27
It was discovered that libXdmcp before 1.1.2 including used weak entropy to generate session keys. On a multi-user system using xdmcp, a local attacker could potentially use information available from the process list to brute force the ke…
- CVE-2016-8614MEDIUMCVSS 6.3EG 6.32018-07-31
A flaw was found in Ansible before version 2.2.0. The apt_key module does not properly verify key fingerprints, allowing remote adversary to create an OpenPGP key which matches the short key ID and inject this key instead of the correct ke…
- CVE-2016-10011MEDIUMCVSS 6.2EG 6.22017-01-05
authfile.c in sshd in OpenSSH before 7.4 does not properly consider the effects of realloc on buffer contents, which might allow local users to obtain sensitive private-key information by leveraging access to a privilege-separated child pr…
- CVE-2024-40593MEDIUMCVSS 4.4EG 6.02025-12-11
A key management errors vulnerability in Fortinet FortiAnalyzer 7.4.0 through 7.4.2, FortiAnalyzer 7.2.0 through 7.2.5, FortiAnalyzer 7.0 all versions, FortiAnalyzer 6.4 all versions, FortiManager 7.4.0 through 7.4.2, FortiManager 7.2.0 th…
- CVE-2025-15105MEDIUMCVSS 5.9EG 5.92025-12-27
A security flaw has been discovered in getmaxun maxun up to 0.0.28. Impacted is an unknown function of the file /getmaxun/maxun/blob/develop/server/src/routes/auth.ts. Performing manipulation of the argument api_key results in use of hard-…
- CVE-2025-8759MEDIUMCVSS 5.9EG 5.92025-08-09
A vulnerability was found in TRENDnet TN-200 1.02b02. It has been declared as problematic. This vulnerability affects unknown code of the component Lighttpd. The manipulation of the argument secdownload.secret with the input neV3rUseMe lea…
- CVE-2018-20187MEDIUMCVSS 5.9EG 5.92019-03-08
A side-channel issue was discovered in Botan before 2.9.0. An attacker capable of precisely measuring the time taken for ECC key generation may be able to derive information about the high bits of the secret key, as the function to derive …
- CVE-2016-6882MEDIUMCVSS 5.9EG 5.92017-03-03
MatrixSSL before 3.8.7, when the DHE_RSA based cipher suite is supported, makes it easier for remote attackers to obtain RSA private key information by conducting a Lenstra side-channel attack.
- CVE-2016-9963MEDIUMCVSS 5.9EG 5.92017-02-01
Exim before 4.87.1 might allow remote attackers to obtain the private DKIM signing key via vectors related to log files and bounce messages.
- CVE-2016-8635MEDIUMCVSS 5.3EG 5.92018-08-01
It was found that Diffie Hellman Client key exchange handling in NSS 3.21.x was vulnerable to small subgroup confinement attack. An attacker could use this flaw to recover private keys by confining the client DH key to small subgroup of th…
- CVE-2026-7306MEDIUMCVSS 5.6EG 5.62026-04-28
A security vulnerability has been detected in Xuxueli xxl-job up to 3.3.2. The impacted element is an unknown function of the file xxl-job-admin/src/main/java/com/xxl/job/admin/scheduler/openapi/OpenApiController.java of the component Open…
- CVE-2026-7018MEDIUMCVSS 5.6EG 5.62026-04-26
A vulnerability was determined in Datavane Datavines up to 13607645e14a4982468cfdbcf75c85cde63bae71. The affected element is an unknown function of the file datavines-core/src/main/java/io/datavines/core/utils/TokenManager.java of the comp…
- CVE-2025-13948MEDIUMCVSS 5.6EG 5.62025-12-03
A vulnerability was determined in opsre go-ldap-admin up to 20251011. This issue affects some unknown processing of the file docs/docker-compose/docker-compose.yaml of the component JWT Handler. Executing manipulation of the argument secre…
- CVE-2025-13877MEDIUMCVSS 5.6EG 5.62025-12-02
A vulnerability was detected in nocobase up to 1.9.4/2.0.0-alpha.37. The affected element is an unknown function of the file nocobase\packages\core\auth\src\base\jwt-service.ts of the component JWT Service. The manipulation of the argument…
- CVE-2025-11290MEDIUMCVSS 5.6EG 5.62025-10-05
A vulnerability was identified in CRMEB up to 5.6.1. This affects an unknown function of the component JWT HMAC Secret Handler. Such manipulation of the argument secret with the input default leads to use of hard-coded cryptographic key .…
- CVE-2017-18323MEDIUMCVSS 5.5EG 5.52019-01-03
Cryptographic key material leaked in TDSCDMA RRC debug messages in snapdragon automobile, snapdragon mobile and snapdragon wear in versions MDM9206, MDM9607, MDM9615, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8909W, MSM8996AU, SD 21…
Map vulnerabilities like CWE-320 to your infrastructure
EchelonGraph correlates every CVE — across CWE-320 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →