VYPR

CWE-1240

Use of a Cryptographic Primitive with a Risky Implementation

BaseDraft

Description

To fulfill the need for a cryptographic primitive, the product implements a cryptographic algorithm using a non-standard, unproven, or disallowed/non-compliant cryptographic implementation.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-97

CVEs mapped to this weakness (23)

page 2 of 2
  • CVE-2025-22475LowFeb 4, 2025
    risk 0.24cvss 3.7epss 0.00

    Dell PowerProtect DD, versions prior to DDOS 8.3.0.0, 7.10.1.50, and 7.13.1.10 contains a use of a Cryptographic Primitive with a Risky Implementation vulnerability. A remote attacker could potentially exploit this vulnerability, leading to Information tampering.

  • CVE-2026-50303MedJul 14, 2026
    risk 0.00cvss 5.5epss 0.00

    Use of a cryptographic primitive with a risky implementation in Windows Key Guard allows an authorized attacker to bypass a security feature locally.

  • CVE-2025-62514HigJan 29, 2026
    risk 0.00cvss 8.3epss 0.00

    Parsec is a cloud-based application for cryptographically secure file sharing. In versions on the 3.x branch prior to 3.6.0, `libparsec_crypto`, a component of the Parsec application, does not check for weak order point of Curve25519 when compiled with its RustCrypto backend. In…