Skip to main content

CWE archive

CWE-332 CVEs

Programmatic archive

10 CVEs tagged with CWE-3321 Critical, 6 High, 2 Medium, 1 Low, 0 Unrated.

CVE-2026-3290

Published May 14, 2026

Timing limitations of the HRNG in RS9116 when power save mode is enabled results in predictable values

CVSS 7.4 · High
evidence mentions
2
Buzz score
21.0

CVE-2017-18486

Published Aug 9, 2019

Jitbit Helpdesk before 9.0.3 allows remote attackers to escalate privileges because of mishandling of the User/AutoLogin userHash parameter. By inspecting the token value provided…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2019-1715

Published May 3, 2019

A vulnerability in the Deterministic Random Bit Generator (DRBG), also known as Pseudorandom Number Generator (PRNG), used in Cisco Adaptive Security Appliance (ASA) Software and…

CVSS 5.3 · Medium

CVE-2016-10743

Published Mar 23, 2019

hostapd before 2.6 does not prevent use of the low-quality PRNG that is reached by an os_random() function call.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2018-9057

Published Mar 27, 2018

aws/resource_aws_iam_user_login_profile.go in the HashiCorp Terraform Amazon Web Services (AWS) provider through v1.12.0 has an inappropriate PRNG algorithm and seeding, which mak…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2014-9690

Published Apr 2, 2017

Huawei home gateways WS318 with software V100R001C01B022 and earlier versions are affected by the PIN offline brute force cracking vulnerability of the WPS protocol because the ra…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2014-0016

Published Mar 24, 2014

stunnel before 5.00, when using fork threading, does not properly update the state of the OpenSSL pseudo-random number generator (PRNG), which causes subsequent children with the…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-10 of 10 CVEsPage 1 of 1