CWE-1392
92 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-1392page 2 of 2
- CVE-2025-2341LOWCVSS 3.1EG 3.12025-03-16
A vulnerability was found in IROAD Dash Cam X5 up to 20250203. It has been rated as problematic. This issue affects some unknown processing of the component SSID. The manipulation leads to use of default credentials. The attack needs to be…
- CVE-2025-2398HIGHCVSS 7.2EG 7.22025-03-17
A vulnerability was found in China Mobile P22g-CIac, ZXWT-MIG-P4G4V, ZXWT-MIG-P8G8V, GT3200-4G4P and GT3200-8G8P up to 20250305. It has been rated as critical. This issue affects some unknown processing of the component CLI su Command Hand…
- CVE-2025-29521MEDIUMCVSS 5.3EG 5.32025-08-25
Insecure default credentials for the Adminsitrator account of D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 allows attackers to escalate privileges via a bruteforce attack.
- CVE-2025-29525MEDIUMCVSS 5.3EG 5.32025-08-25
DASAN GPON ONU H660WM OS version H660WMR210825 Hardware version DS-E5-583-A1 was discovered to contain insecure default credentials in the modem's control panel.
- CVE-2025-29629CRITICALCVSS 9.1EG 8.82025-07-25
Gardyn Home Kit firmware before master.619, Home Kit Mobile Application before 2.11.0, and Home Kit Cloud API before 2.12.2026 use weak default credentials for secure shell access. This may result in attackers gaining access to exposed Gar…
- CVE-2025-30139CRITICALCVSS 9.8EG 9.82025-03-18
An issue was discovered on G-Net Dashcam BB GONX devices. Default credentials for SSID cannot be changed. It broadcasts a fixed SSID with default credentials that cannot be changed. This allows any nearby attacker to connect to the dashcam…
- CVE-2025-34516CRITICALCVSS 9.8EG 9.82025-10-16
Ilevia EVE X1 Server firmware versions ≤ 4.7.18.0.eden contain a use of default credentials vulnerability that allows an unauthenticated attacker to obtain remote access. Ilevia has declined to service this vulnerability, and recommend…
- CVE-2025-35042CRITICALCVSS 9.8EG 9.82025-09-22
Airship AI Acropolis includes a default administrative account that uses the same credentials on every installation. Instances of Airship AI that do not change this account password are vulnerable to a remote attacker logging in and gainin…
- CVE-2025-35114HIGHCVSS 7.5EG 7.52025-08-26
Agiloft Release 28 contains several accounts with default credentials that could allow local privilege escalation. The password hash is known for at least one of the accounts and the credentials could be cracked offline. Users should upgra…
- CVE-2025-35452CRITICALCVSS 9.8EG 9.82025-09-05
PTZOptics and possibly other ValueHD-based pan-tilt-zoom cameras use default, shared credentials for the administrative web interface.
- CVE-2025-36221MEDIUMCVSS 5.3EG 5.32026-05-26
IBM Cloud Pak for Data System - Cyclops 11.3.0.2 through Interim Fix 002 IBM Cloud Pak for Data System uses default passwords default passwords from the manufacturing process for use during the installation process, which could allow an a…
- CVE-2025-5124HIGHCVSS 8.1EG 8.12025-05-24
A vulnerability classified as critical has been found in Sony SNC-M1, SNC-M3, SNC-RZ25N, SNC-RZ30N, SNC-DS10, SNC-CS3N and SNC-RX570N up to 1.30. This affects an unknown part of the component Administrative Interface. The manipulation lead…
- CVE-2025-51535CRITICALCVSS 9.1EG 6.52025-08-04
Austrian Archaeological Institute (AI) OpenAtlas v8.11.0 as discovered to contain a SQL injection vulnerability.
- CVE-2025-51536CRITICALCVSS 9.8EG 9.82025-08-04
Austrian Archaeological Institute (AI) OpenAtlas v8.11.0 as discovered to contain a hardcoded Administrator password.
- CVE-2025-52997MEDIUMCVSS 5.9EG 5.92025-06-30
File Browser provides a file managing interface within a specified directory and it can be used to upload, delete, preview, rename and edit files. Prior to version 2.34.1, a missing password policy and brute-force protection makes the auth…
- CVE-2025-54137HIGHCVSS 7.3EG 7.32025-07-22
HAX CMS NodeJS allows users to manage their microsite universe with a NodeJS backend. Versions 11.0.9 and below were distributed with hardcoded default credentials for the user and superuser accounts. Additionally, the application has defa…
- CVE-2025-54303CRITICALCVSS 9.8EG 9.82025-12-04
The Thermo Fisher Torrent Suite Django application 5.18.1 has weak default credentials, which are stored as fixtures for the Django ORM API. The ionadmin user account can be used to authenticate to default deployments with the password ion…
- CVE-2025-54756HIGHCVSS 8.4EG 8.42026-02-12
BrightSign players running BrightSign OS series 4 prior to v8.5.53.1 or series 5 prior to v9.0.166 use a default password that is guessable with knowledge of the device information. The latest release fixes this issue for new installati…
- CVE-2025-55051CRITICALCVSS 10.0EG 10.02025-09-09
CWE-1392: Use of Default Credentials
- CVE-2025-55110MEDIUMCVSS 5.5EG 5.52025-09-16
Control-M/Agents use a kdb or PKCS#12 keystore by default, and the default keystore password is well known and documented. An attacker with read access to the keystore could access sensitive data using this password.
- CVE-2025-55740MEDIUMCVSS 6.5EG 6.52025-08-19
nginx-defender is a high-performance, enterprise-grade Web Application Firewall (WAF) and threat detection system engineered for modern web infrastructure. This is a configuration vulnerability affecting nginx-defender deployments. Example…
- CVE-2025-58744HIGHCVSS 7.5EG 7.52026-01-20
Use of Default Credentials, Hard-coded Credentials vulnerability in C2SGlobalSettings.dll in Milner ImageDirector Capture on Windows allows decryption of document archive files using credentials decrypted with hard-coded application en…
- CVE-2025-59108CRITICALCVSS 9.2EG 0.02026-01-26
By default, the password for the Access Manager's web interface, is set to 'admin'. In the tested version changing the password was not enforced.
- CVE-2025-6529HIGHCVSS 8.8EG 8.82025-06-23
A vulnerability was found in 70mai M300 up to 20250611 and classified as critical. Affected by this issue is some unknown functionality of the component Telnet Service. The manipulation leads to use of default credentials. The attack needs…
- CVE-2025-6951MEDIUMCVSS 4.3EG 4.32025-07-01
A vulnerability classified as problematic was found in SAFECAM X300 up to 20250611. This vulnerability affects unknown code of the component FTP Service. The manipulation leads to use of default credentials. Access to the local network is …
- CVE-2025-7740HIGHCVSS 8.8EG 0.02026-01-28
Default credentials vulnerability exists in SuprOS product. If exploited, this could allow an authenticated local attacker to use an admin account created during product deployment.
- CVE-2025-7907MEDIUMCVSS 4.3EG 4.32025-07-20
A vulnerability was found in yangzongzhuan RuoYi up to 4.8.1. It has been classified as problematic. Affected is an unknown function of the file ruoyi-admin/src/main/resources/application-druid.yml of the component Druid. The manipulation …
- CVE-2025-8530MEDIUMCVSS 5.3EG 5.32025-08-04
A vulnerability, which was classified as problematic, has been found in elunez eladmin up to 2.7. Affected by this issue is some unknown functionality of the file eladmin-system\src\main\resources\config\application-prod.yml of the compone…
- CVE-2025-8731CRITICALCVSS 9.8EG 9.82025-08-08
A vulnerability was identified in TRENDnet TI-G160i, TI-PG102i and TPL-430AP up to 20250724. This affects an unknown part of the component SSH Service. The manipulation leads to use of default credentials. It is possible to initiate the at…
- CVE-2025-9576LOWCVSS 2.5EG 2.52025-08-28
A vulnerability was identified in seeedstudio ReSpeaker LinkIt7688. Impacted is an unknown function of the file /etc/shadow of the component Administrative Interface. The manipulation leads to use of default credentials. An attack has to b…
- CVE-2025-9577LOWCVSS 2.5EG 2.52025-08-28
A security flaw has been discovered in TOTOLINK X2000R up to 2.0.0. The affected element is an unknown function of the file /etc/shadow.sample of the component Administrative Interface. The manipulation results in use of default credential…
- CVE-2026-1803HIGHCVSS 8.1EG 8.12026-02-03
A weakness has been identified in Ziroom ZHOME A0101 1.0.1.0. Impacted is an unknown function of the component Dropbear SSH Service. This manipulation causes use of default credentials. Remote exploitation of the attack is possible. The co…
- CVE-2026-1972MEDIUMCVSS 5.3EG 5.32026-02-06
A vulnerability was found in Edimax BR-6208AC 2_1.02. The affected element is the function auth_check_userpass2. Performing a manipulation of the argument Username/Password results in use of default credentials. The attack may be initiated…
- CVE-2026-22273HIGHCVSS 8.8EG 8.82026-01-23
Dell ECS, versions 3.8.1.0 through 3.8.1.7, and Dell ObjectScale versions prior to 4.2.0.0, contains an Use of Default Credentials vulnerability in the OS. A low privileged attacker with remote access could potentially exploit this vulnera…
- CVE-2026-26366CRITICALCVSS 9.8EG 9.82026-02-15
eNet SMART HOME server 2.2.1 and 2.3.1 ships with default credentials (user:user, admin:admin) that remain active after installation and commissioning without enforcing a mandatory password change. Unauthenticated attackers can use these d…
- CVE-2026-42072CRITICALCVSS 9.8EG 9.82026-05-08
Nornicdb is a distributed low-latency, Graph+Vector, Temporal MVCC with all sub-ms HNSW search, graph traversal, and writes. Prior to version 1.0.42-hotfix, the --address CLI flag (and NORNICDB_ADDRESS / server.host config key) is plumbed …
- CVE-2026-42941HIGHCVSS 8.3EG 8.32026-05-29
The Danelec MacGregor Voyage Data Recorder device includes a default username and password, with no enforced password change.
- CVE-2026-44159CRITICALCVSS 9.8EG 9.82026-05-19
Tyler Identity Local (TID-L) uses documented, default administrative credentials. Users are not required to change the credentials before deployment. TID-L has not been distributed since December 2020, and has not been supported since 2021.
- CVE-2026-45039CRITICALCVSS 9.8EG 9.82026-05-28
RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-beta.2, the internode RPC layer authenticates every request with an HMAC-SHA256 signature using a shared secret. The function that produces this secret, get_shared…
- CVE-2026-7365HIGHCVSS 8.4EG 8.42026-05-27
IBM Operations Analytics - Log Analysis and IBM SmartCloud Analytics - Log Analysis uses default passwords default passwords from the manufacturing process for use during the installation process, which could allow an attacker to bypass …
- CVE-2026-7428CRITICALCVSS 9.2EG 9.22026-05-12
Prior to 2025-11-03, well-intended users of Terraform or REST API for Google Cloud AlloyDB for PostgreSQL could have created clusters with an insecure default password which could have been exploited by a remote attacker to gain full…
- CVE-2026-9844HIGHCVSS 8.8EG 8.82026-06-02
Use of default credentials vulnerability in Roche Diagnostics navify Digital Pathology (RabbitMQ Management interface modules) allows Default Usernames and Passwords. This issue affects navify Digital Pathology: from 2.0.0 before 2.4.1.
Map vulnerabilities like CWE-1392 to your infrastructure
EchelonGraph correlates every CVE — across CWE-1392 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →