Skip to main content

CWE archive

CWE-327 CVEs

Programmatic archive

685 CVEs tagged with CWE-32765 Critical, 256 High, 300 Medium, 64 Low, 0 Unrated.

CVE-2018-1996

Published Feb 19, 2019

IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could provide weaker than expected security, caused by the improper TLS configuration. A remote attacker could exploit this…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-5719

Published Jan 8, 2019

In Wireshark 2.6.0 to 2.6.5 and 2.4.0 to 2.4.11, the ISAKMP dissector could crash. This was addressed in epan/dissectors/packet-isakmp.c by properly handling the case of a missing…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-18587

Published Oct 23, 2018

BigProf AppGini 5.70 stores the passwords in the database using the MD5 hash.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-11070

Published Sep 11, 2018

RSA BSAFE Crypto-J versions prior to 6.2.4 and RSA BSAFE SSL-J versions prior to 6.2.4 contain a Covert Timing Channel vulnerability during PKCS #1 unpadding operations, also know…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-11069

Published Sep 11, 2018

RSA BSAFE SSL-J versions prior to 6.2.4 contain a Covert Timing Channel vulnerability during RSA decryption, also known as a Bleichenbacher attack on RSA decryption. A remote atta…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-1575

Published Jul 20, 2018

IBM Sterling B2B Integrator Standard Edition (IBM Sterling File Gateway 2.2.0 through 2.2.6) uses weaker than expected cryptographic algorithms that could allow a local attacker t…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-16718

Published Jun 27, 2018

Beckhoff TwinCAT 3 supports communication over ADS. ADS is a protocol for industrial automation in protected environments. This protocol uses user configured routes, that can be e…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-12420

Published Jun 14, 2018

IceHrm before 23.0.1.OS has a risky usage of a hashed password in a request.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2018-5152

Published Jun 11, 2018

WebExtensions with the appropriate permissions can attach content scripts to Mozilla sites such as accounts.firefox.com and listen to network traffic to the site through the "webR…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 601-625 of 685 CVEsPage 25 of 28