Fallos del tipo CWE-310

78 resultados
CVE-2026-2966MEDIUMCesanta Mongoose DNS Transaction ID dns.c mg_sendnsreq random valuesEPSS 0.4%CVE-2021-4258LOWwhohas Package Information cleartext transmissionEPSS 0.4%CVE-2020-8173A too small set of random characters being used for encryption in Nextcloud Server 18.0.4 allowed decryption in shorter time than intended.EPSS 0.4%CVE-2026-2618MEDIUMBeetel 777VR1 SSH Service risky encryptionEPSS 0.3%CVE-2025-8741MEDIUMmacrozheng mall login cleartext transmissionEPSS 0.3%CVE-2026-7610MEDIUMTRENDnet TEW-821DAP Firmware Update ssi cleartext transmissionEPSS 0.3%CVE-2025-9828MEDIUMTenda CP6 uhttp sub_2B7D04 risky encryptionEPSS 0.3%CVE-2022-45453MEDIUMTLS/SSL weak cipher suites enabled. The following products are affected: Acronis Cyber Protect 15 (Windows, Linux) before build 30984.EPSS 0.3%CVE-2020-8150A cryptographic issue in Nextcloud Server 19.0.1 allowed an attacker to downgrade the encryption scheme and break the integrity of encryptedEPSS 0.3%CVE-2025-3329LOWConsumer Comanda Mobile Restaurant Order cleartext transmissionEPSS 0.3%CVE-2025-1953LOWvLLM AIBrix Prefix Caching hash.go random valuesEPSS 0.3%CVE-2022-23719HIGHPingID Windows Login prior to 2.8 does not authenticate communication with a local Java service used to capture security key requestsEPSS 0.3%CVE-2017-13094The P1735 IEEE standard describes flawed methods for encrypting electronic-design intellectual property (IP), including modification of the encryption key and insertion of hardware trojans in any IPEPSS 0.3%CVE-2018-0412A vulnerability in the implementation of Extensible Authentication Protocol over LAN (EAPOL) functionality in Cisco Small Business 100 SerieEPSS 0.3%CVE-2017-20200MEDIUMCoinomi cleartext transmissionEPSS 0.2%CVE-2022-4610LOWClick Studios Passwordstate risky encryptionEPSS 0.2%CVE-2026-7847LOWchatchat-space Langchain-Chatchat Uploaded File openai_routes.py _get_file_id random valuesEPSS 0.2%CVE-2021-41994MEDIUMPingID iOS mobile application prior to 1.19 vulnerable to pre-computed dictionary attacksEPSS 0.2%CVE-2025-10776MEDIUMLionCoders SalePro POS Login cleartext transmissionEPSS 0.2%CVE-2021-41993MEDIUMPingID Android mobile application prior to 1.19 vulnerable to pre-computed dictionary attacksEPSS 0.2%