VYPR

CWE-327

Use of a Broken or Risky Cryptographic Algorithm

ClassDraftLikelihood: High

Description

The product uses a broken or risky cryptographic algorithm or protocol.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-20 · CAPEC-459 · CAPEC-473 · CAPEC-475 · CAPEC-608 · CAPEC-614 · CAPEC-97

CVEs mapped to this weakness (713)

page 15 of 36
  • CVE-2019-0030HigJan 15, 2019
    risk 0.47cvss 7.2epss 0.01

    Juniper ATP uses DES and a hardcoded salt for password hashing, allowing for trivial de-hashing of the password file contents. This issue affects Juniper ATP 5.0 versions prior to 5.0.3.

  • CVE-2018-11209HigMay 16, 2018
    risk 0.47cvss 7.2epss 0.01

    An issue was discovered in Z-BlogPHP 2.0.0. zb_system/cmd.php?act=verify relies on MD5 for the password parameter, which might make it easier for attackers to bypass intended access restrictions via a dictionary or rainbow-table attack. NOTE: the vendor declined to accept this…

  • CVE-2025-14859HigApr 7, 2026
    risk 0.46cvss epss 0.00

    The Semtech LR11xx LoRa transceivers implement secure boot functionality using digital signatures to authenticate firmware. However, the implementation uses a non-standard cryptographic hashing algorithm that is vulnerable to second preimage attacks. An attacker with physical…

  • CVE-2026-31839HigMar 11, 2026
    risk 0.46cvss 8.2epss 0.00

    Striae is a firearms examiner's comparison companion. A high-severity integrity bypass vulnerability existed in Striae's digital confirmation workflow prior to v3.0.0. Hash-only validation trusted manifest hash fields that could be modified together with package content,…

  • CVE-2025-66017HigNov 25, 2025
    risk 0.46cvss epss 0.00

    CGGMP24 is a state-of-art ECDSA TSS protocol that supports 1-round signing (requires 3 preprocessing rounds), identifiable abort, and a key refresh protocol. In versions 0.6.3 and prior of cggmp21 and version 0.7.0-alpha.1 of cggmp24, presignatures can be used in the way that…

  • CVE-2025-34500HigOct 24, 2025
    risk 0.46cvss epss 0.00

    Deck Mate 2's firmware update mechanism accepts packages without cryptographic signature verification, encrypts them with a single hard-coded AES key shared across devices, and uses a truncated HMAC for integrity validation. Attackers with access to the update interface -…

  • CVE-2025-45766HigAug 6, 2025
    risk 0.46cvss 7.0epss 0.00

    poco v1.14.1-release was discovered to contain weak encryption. NOTE: this issue has been disputed on the basis that key lengths are expected to be set by an application, not by this library. This dispute is subject to review under CNA rules 4.1.4, 4.1.14, and other rules; the…

  • CVE-2025-45767HigAug 1, 2025
    risk 0.46cvss 7.0epss 0.00

    jose v6.0.10 was discovered to contain weak encryption. NOTE: this is disputed by a third party because the claim of "do not meet recommended security standards" does not reflect guidance in a final publication.

  • CVE-2023-52236HigJul 8, 2025
    risk 0.46cvss 7.0epss 0.00

    A vulnerability has been identified in RUGGEDCOM i800 (All versions), RUGGEDCOM i801 (All versions), RUGGEDCOM i802 (All versions), RUGGEDCOM i803 (All versions), RUGGEDCOM M2100 (All versions), RUGGEDCOM M2200 (All versions), RUGGEDCOM M969 (All versions), RUGGEDCOM RMC30 (All…

  • CVE-2023-34758HigAug 28, 2023
    risk 0.46cvss 8.1epss 0.01

    Sliver from v1.5.x to v1.5.39 has an improper cryptographic implementation, which allows attackers to execute a man-in-the-middle attack via intercepted and crafted responses.

  • CVE-2023-28006HigJun 22, 2023
    risk 0.46cvss 7.0epss 0.00

    The OSD Bare Metal Server uses a cryptographic algorithm that is no longer considered sufficiently secure.

  • CVE-2022-35513HigSep 7, 2022
    risk 0.45cvss 7.5epss 0.05

    The Blink1Control2 application <= 2.2.7 uses weak password encryption and an insecure method of storage.

  • CVE-2026-9261MedJun 16, 2026
    risk 0.44cvss 6.8epss 0.00

    Use of weak SSH cryptographic algorithms in Canon EOS Network Setting Tool Version 1.5.0 or earlier

  • CVE-2025-10237MedJun 10, 2026
    risk 0.44cvss 6.7epss 0.00

    During an internal security assessment, a potential vulnerability was discovered in some ThinkPad embedded controller firmware that could allow a privileged local user to perform arbitrary reads or writes to privileged memory regions.

  • CVE-2025-3938MedMay 22, 2025
    risk 0.44cvss 6.8epss 0.00

    Missing Cryptographic Step vulnerability in Tridium Niagara Framework on Windows, Linux, QNX, Tridium Niagara Enterprise Security on Windows, Linux, QNX allows Cryptanalysis. This issue affects Niagara Framework: before 4.14.2, before 4.15.1, before 4.10.11; Niagara Enterprise…

  • CVE-2024-36440MedAug 22, 2024
    risk 0.44cvss 6.8epss 0.00

    An issue was discovered on Swissphone DiCal-RED 4009 devices. An attacker with access to the file /etc/deviceconfig may recover the administrative device password via password-cracking methods, because unsalted MD5 is used.

  • CVE-2024-31033MedApr 1, 2024
    risk 0.44cvss 6.8epss 0.01

    JJWT (aka Java JWT) through 0.12.5 ignores certain characters and thus a user might falsely conclude that they have a strong key. The impacted code is the setSigningKey() method within the DefaultJwtParser class and the signWith() method within the DefaultJwtBuilder class. NOTE:…

  • CVE-2023-32043MedJul 11, 2023
    risk 0.44cvss 6.8epss 0.01

    Windows Remote Desktop Security Feature Bypass Vulnerability

  • CVE-2022-34757MedJul 13, 2022
    risk 0.44cvss 6.7epss 0.00

    A CWE-327: Use of a Broken or Risky Cryptographic Algorithm vulnerability exists where weak cipher suites can be used for the SSH connection between Easergy Pro software and the device, which may allow an attacker to observe protected communication details. Affected Products:…

  • CVE-2022-30111MedMay 18, 2022
    risk 0.44cvss 6.8epss 0.00

    Due to the use of an insecure algorithm for rolling codes in MCK Smartlock 1.0, allows attackers to unlock the mechanism via replay attacks.