VYPR

CWE-327

Use of a Broken or Risky Cryptographic Algorithm

ClassDraftLikelihood: High

Description

The product uses a broken or risky cryptographic algorithm or protocol.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-20 · CAPEC-459 · CAPEC-473 · CAPEC-475 · CAPEC-608 · CAPEC-614 · CAPEC-97

CVEs mapped to this weakness (713)

page 24 of 36
  • CVE-2021-40824MedSep 13, 2021
    risk 0.38cvss 5.9epss 0.01

    A logic error in the room key sharing functionality of Element Android before 1.2.2 and matrix-android-sdk2 (aka Matrix SDK for Android) before 1.2.2 allows a malicious Matrix homeserver present in an encrypted room to steal room encryption keys (via crafted Matrix protocol…

  • CVE-2021-40530MedSep 6, 2021
    risk 0.38cvss 5.9epss 0.01

    The ElGamal implementation in Crypto++ through 8.5 allows plaintext recovery because, during interaction between two cryptographic libraries, a certain dangerous combination of the prime defined by the receiver's public key, the generator defined by the receiver's public key,…

  • CVE-2021-40528MedSep 6, 2021
    risk 0.38cvss 5.9epss 0.01

    The ElGamal implementation in Libgcrypt before 1.9.4 allows plaintext recovery because, during interaction between two cryptographic libraries, a certain dangerous combination of the prime defined by the receiver's public key, the generator defined by the receiver's public key,…

  • CVE-2021-37588MedJul 30, 2021
    risk 0.38cvss 5.9epss 0.01

    In Charm 0.43, any two users can collude to achieve the ability to decrypt YCT14 data.

  • CVE-2021-20441MedMar 3, 2021
    risk 0.38cvss 5.9epss 0.01

    IBM Security Verify Bridge uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 196617.

  • CVE-2020-20949MedJan 20, 2021
    risk 0.38cvss 5.9epss 0.01

    Bleichenbacher's attack on PKCS #1 v1.5 padding for RSA in STM32 cryptographic firmware library software expansion for STM32Cube (UM1924). The vulnerability can allow one to use Bleichenbacher's oracle attack to decrypt an encrypted ciphertext by making successive queries to the…

  • CVE-2020-20950MedJan 19, 2021
    risk 0.38cvss 5.9epss 0.01

    Bleichenbacher's attack on PKCS #1 v1.5 padding for RSA in Microchip Libraries for Applications 2018-11-26 All up to 2018-11-26. The vulnerability can allow one to use Bleichenbacher's oracle attack to decrypt an encrypted ciphertext by making successive queries to the server…

  • CVE-2020-9526MedAug 10, 2020
    risk 0.38cvss 5.9epss 0.01

    CS2 Network P2P through 3.x, as used in millions of Internet of Things devices, suffers from an information exposure flaw that exposes user session data to supernodes in the network, as demonstrated by passively eavesdropping on user video/audio streams, capturing credentials,…

  • CVE-2011-2487MedMar 11, 2020
    risk 0.38cvss 5.9epss 0.02

    The implementations of PKCS#1 v1.5 key transport mechanism for XMLEncryption in JBossWS and Apache WSS4J before 1.6.5 is susceptible to a Bleichenbacher attack.

  • CVE-2019-19891MedJan 13, 2020
    risk 0.38cvss 5.9epss 0.00

    An encryption key vulnerability on Mitel SIP-DECT wireless devices 8.0 and 8.1 could allow an attacker to launch a man-in-the-middle attack. A successful exploit may allow the attacker to intercept sensitive information.

  • CVE-2019-17428MedDec 12, 2019
    risk 0.38cvss 5.9epss 0.01

    An issue was discovered in Intesync Solismed 3.3sp1. An flaw in the encryption implementation exists, allowing for all encrypted data stored within the database to be decrypted.

  • CVE-2019-13629MedOct 3, 2019
    risk 0.38cvss 5.9epss 0.01

    MatrixSSL 4.2.1 and earlier contains a timing side channel in ECDSA signature generation. This allows a local or a remote attacker, able to measure the duration of hundreds to thousands of signing operations, to compute the private key used. The issue occurs because…

  • CVE-2019-9399MedSep 27, 2019
    risk 0.38cvss 5.9epss 0.00

    The Print Service is susceptible to man in the middle attacks due to improperly used crypto. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions:…

  • CVE-2019-10929MedAug 13, 2019
    risk 0.38cvss 5.9epss 0.01

    A vulnerability has been identified in SIMATIC CP 1626 (All versions), SIMATIC ET 200SP Open Controller CPU 1515SP PC (incl. SIPLUS variants) (All versions), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) (All versions < V20.8), SIMATIC HMI Panel (incl.…

  • CVE-2019-13604MedJul 15, 2019
    risk 0.38cvss 5.9epss 0.01

    There is a short key vulnerability in HID Global DigitalPersona (formerly Crossmatch) U.are.U 4500 Fingerprint Reader v24. The key for obfuscating the fingerprint image is vulnerable to brute-force attacks. This allows an attacker to recover the key and decrypt that image using…

  • CVE-2019-4156MedJun 25, 2019
    risk 0.38cvss 5.9epss 0.01

    IBM Security Access Manager 9.0.1 through 9.0.6 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 158572.

  • CVE-2019-11323MedMay 9, 2019
    risk 0.38cvss 5.9epss 0.01

    HAProxy before 1.9.7 mishandles a reload with rotated keys, which triggers use of uninitialized, and very predictable, HMAC keys. This is related to an include/types/ssl_sock.h error.

  • CVE-2018-1720MedApr 25, 2019
    risk 0.38cvss 5.9epss 0.01

    IBM Sterling B2B Integrator Standard Edition 5.2.0.1, 5.2.6.3_6, 6.0.0.0, and 6.0.0.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 147294.

  • CVE-2019-1828MedApr 4, 2019
    risk 0.38cvss 5.9epss 0.01

    A vulnerability in the web-based management interface of Cisco Small Business RV320 and RV325 Dual Gigabit WAN VPN Routers could allow an unauthenticated, remote attacker to access administrative credentials. The vulnerability exists because affected devices use weak encryption…

  • CVE-2019-6593MedFeb 26, 2019
    risk 0.38cvss 5.9epss 0.01

    On BIG-IP 11.5.1-11.5.4, 11.6.1, and 12.1.0, a virtual server configured with a Client SSL profile may be vulnerable to a chosen ciphertext attack against CBC ciphers. When exploited, this may result in plaintext recovery of encrypted messages through a man-in-the-middle (MITM)…