Skip to main content

CWE archive

CWE-656 CVEs

Programmatic archive

11 CVEs tagged with CWE-6564 Critical, 3 High, 3 Medium, 1 Low, 0 Unrated.

CVE-2026-7161

Published May 4, 2026

An insufficient encryption vulnerability exists in the Device Authentication functionality of GeoVision GV-IP Device Utility 9.0.5. Listening to broadcast packets can lead to cred…

CVSS 9.3 · Critical
evidence mentions
4
Buzz score
32.6
Vendor/product tagsBeta · best-effort

CVE-2026-42363

Published Apr 27, 2026

An insufficient encryption vulnerability exists in the Device Authentication functionality of GeoVision GV-IP Device Utility 9.0.5. Listening to broadcast packets can lead to cred…

CVSS 9.3 · Critical
evidence mentions
2
Buzz score
21.0

CVE-2025-59093

Published Jan 26, 2026

Exos 9300 instances are using a randomly generated database password to connect to the configured MSSQL server. The password is derived from static random values, which are concat…

CVSS 8.5 · High

CVE-2025-7020

Published Aug 9, 2025

An incorrect encryption implementation vulnerability exists in the system log dump feature of BYD's DiLink 3.0 OS (e.g. in the model ATTO3). An attacker with physical access to th…

CVSS 5.1 · Medium

CVE-2025-25983

Published Apr 18, 2025

An issue in Macro-video Technologies Co.,Ltd V380 Pro android application 2.1.44 and V380 Pro android application 2.1.64 allows an attacker to obtain sensitive information via the…

CVSS 3.4 · Low
evidence mentions
2
Buzz score
20.5
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2024-12297

Published Jan 15, 2025

Moxa’s Ethernet switch is vulnerable to an authentication bypass because of flaws in its authorization mechanism. Although both client-side and back-end server verification are in…

CVSS 9.2 · Critical
evidence mentions
1
Buzz score
11.9

CVE-2024-9138

Published Jan 3, 2025

Moxa’s cellular routers, secure routers, and network security appliances are affected by a high-severity vulnerability, CVE-2024-9138. This vulnerability involves hard-coded crede…

CVSS 8.6 · High
evidence mentions
2
Buzz score
17.5

CVE-2020-10284

Published Jul 15, 2020

No authentication is required to control the robot inside the network, moreso the latest available user manual shows an option that lets the user to add a password to the robot bu…

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-11 of 11 CVEsPage 1 of 1