Vulnerabilities (CVE)

Filtered by CWE-521
Total 206 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-7293 1 Progress 1 Telerik Reporting 2024-10-15 N/A 8.8 HIGH
In Progress® Telerik® Report Server versions prior to 2024 Q3 (10.2.24.806), a password brute forcing attack is possible through weak password requirements.
CVE-2021-38133 1 Microfocus 1 Edirectory 2024-09-18 N/A 6.5 MEDIUM
Possible External Service Interaction attack in eDirectory has been discovered in OpenText™ eDirectory. This impact all version before 9.2.6.0000.
CVE-2022-39997 2024-08-28 N/A 8.0 HIGH
A weak password requirement issue was discovered in Teldats Router RS123, RS123w allows a remote attacker to escalate privileges
CVE-2024-40697 1 Ibm 1 Common Licensing 2024-08-22 N/A 7.5 HIGH
IBM Common Licensing 9.0 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 297895.
CVE-2024-42850 2024-08-19 N/A 9.8 CRITICAL
An issue in the password change function of Silverpeas v6.4.2 and lower allows for the bypassing of password complexity requirements.
CVE-2024-41683 1 Siemens 1 Location Intelligence 2024-08-14 N/A 5.3 MEDIUM
A vulnerability has been identified in Location Intelligence family (All versions < V4.4). Affected products do not properly enforce a strong user password policy. This could facilitate a brute force attack against legitimate user passwords.