CWE-331— Insufficient Entropy
122 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-331page 1 of 3
- CVE-2001-0950HIGHCVSS 7.5EG 7.52001-12-04
ValiCert Enterprise Validation Authority (EVA) Administration Server 3.3 through 4.2.1 uses insufficiently random data to (1) generate session tokens for HSMs using the C rand function, or (2) generate certificates or keys using /dev/urand…
- CVE-2008-1447MEDIUMCVSS 6.8EG 9.02008-07-08
The DNS protocol, as implemented in (1) BIND 8 and 9 before 9.5.0-P1, 9.4.2-P1, and 9.3.5-P1; (2) Microsoft DNS in Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP1 and SP2; and other implementations allow remote attackers to spoof DNS…
- CVE-2012-4687NONECVSS 0.0EG 0.02012-12-08
Post Oak AWAM Bluetooth Reader Traffic System does not use a sufficient source of entropy for private keys, which makes it easier for man-in-the-middle attackers to spoof a device by predicting a key value.
- CVE-2013-2260CRITICALCVSS 9.8EG 9.82019-11-04
Cryptocat before 2.0.22: Cryptocat.random() Function Array Key has Entropy Weakness
- CVE-2014-8422HIGHCVSS 8.1EG 8.12018-04-12
The web-based management (WBM) interface in Unify (former Siemens) OpenStage SIP and OpenScape Desk Phone IP V3 devices before R3.32.0 generates session cookies with insufficient entropy, which makes it easier for remote attackers to hijac…
- CVE-2015-3006MEDIUMCVSS 6.5EG 6.52020-02-28
On the QFX3500 and QFX3600 platforms, the number of bytes collected from the RANDOM_INTERRUPT entropy source when the device boots up is insufficient, possibly leading to weak or duplicate SSH keys or self-signed SSL/TLS certificates. Entr…
- CVE-2015-8851HIGHCVSS 7.5EG 7.52020-01-30
node-uuid before 1.4.4 uses insufficiently random data to create a GUID, which could make it easier for attackers to have unspecified impact via brute force guessing.
- CVE-2017-18883CRITICALCVSS 9.1EG 9.12020-06-19
An issue was discovered in Mattermost Server before 4.3.0, 4.2.1, and 4.1.2, when serving as an OAuth 2.0 Service Provider. There is low entropy for authorization data.
- CVE-2017-2625MEDIUMCVSS 6.5EG 5.52018-07-27
It was discovered that libXdmcp before 1.1.2 including used weak entropy to generate session keys. On a multi-user system using xdmcp, a local attacker could potentially use information available from the process list to brute force the ke…
- CVE-2017-2626MEDIUMCVSS 5.2EG 5.52018-07-27
It was discovered that libICE before 1.0.9-8 used a weak entropy to generate keys. A local attacker could potentially use this flaw for session hijacking using the information available from the process list.
- CVE-2017-6030MEDIUMCVSS 6.5EG 6.52017-06-30
A Predictable Value Range from Previous Values issue was discovered in Schneider Electric Modicon PLCs Modicon M221, firmware versions prior to Version 1.5.0.0, Modicon M241, firmware versions prior to Version 4.0.5.11, and Modicon M251, f…
- CVE-2018-1000620CRITICALCVSS 9.8EG 9.82018-07-09
Eran Hammer cryptiles version 4.1.1 earlier contains a CWE-331: Insufficient Entropy vulnerability in randomDigits() method that can result in An attacker is more likely to be able to brute force something that was supposed to be random.. …
- CVE-2018-10240HIGHCVSS 7.3EG 7.32018-05-16
SolarWinds Serv-U MFT before 15.1.6 HFv1 assigns authenticated users a low-entropy session token that can be included in requests to the application as a URL parameter in lieu of a session cookie. This session token's value can be brute-fo…
- CVE-2018-15812HIGHCVSS 7.5EG 7.52019-07-03
DNN (aka DotNetNuke) 9.2 through 9.2.1 incorrectly converts encryption key source values, resulting in lower than expected entropy.
- CVE-2018-18326HIGHCVSS 7.5EG 7.52019-07-03
DNN (aka DotNetNuke) 9.2 through 9.2.2 incorrectly converts encryption key source values, resulting in lower than expected entropy. NOTE: this issue exists because of an incomplete fix for CVE-2018-15812.
- CVE-2018-8435MEDIUMCVSS 4.2EG 4.22018-09-13
A security feature bypass vulnerability exists when Windows Hyper-V BIOS loader fails to provide a high-entropy source, aka "Windows Hyper-V Security Feature Bypass Vulnerability." This affects Windows Server 2016, Windows 10, Windows 10 S…
- CVE-2018-9426HIGHCVSS 7.5EG 6.52024-12-02
In RsaKeyPairGenerator::getNumberOfIterations of RSAKeyPairGenerator.java, an incorrect implementation could cause weak RSA key pairs being generated. This could lead to crypto vulnerability with no additional execution privileges nee…
- CVE-2019-10064HIGHCVSS 7.5EG 7.52020-02-28
hostapd before 2.6, in EAP mode, makes calls to the rand() and random() standard library functions without any preceding srand() or srandom() call, which results in inappropriate use of deterministic values. This was fixed in conjunction w…
- CVE-2019-14317MEDIUMCVSS 5.3EG 5.32019-12-11
wolfSSL and wolfCrypt 4.1.0 and earlier (formerly known as CyaSSL) generate biased DSA nonces. This allows a remote attacker to compute the long term private key from several hundred DSA signatures via a lattice attack. The issue occurs be…
- CVE-2019-14806HIGHCVSS 7.5EG 7.52019-08-09
Pallets Werkzeug before 0.15.3, when used with Docker, has insufficient debugger PIN randomness because Docker containers share the same machine id.
- CVE-2019-15703HIGHCVSS 7.5EG 7.52019-10-24
An Insufficient Entropy in PRNG vulnerability in Fortinet FortiOS 6.2.1, 6.2.0, 6.0.8 and below for device not enable hardware TRNG token and models not support builtin TRNG seed allows attacker to theoretically recover the long term ECDSA…
- CVE-2019-15847HIGHCVSS 7.5EG 7.52019-09-02
The POWER9 backend in GNU Compiler Collection (GCC) before version 10 could optimize multiple calls of the __builtin_darn intrinsic into a single call, thus reducing the entropy of the random number generator. This occurred because a volat…
- CVE-2019-9555MEDIUMCVSS 5.3EG 5.32019-03-05
Sagemcom F@st 5260 routers using firmware version 0.4.39, in WPA mode, default to using a PSK that is generated from a 2-part wordlist of known values and a nonce with insufficient entropy. The number of possible PSKs is about 1.78 billion…
- CVE-2020-10285CRITICALCVSS 9.8EG 9.82020-07-15
The authentication implementation on the xArm controller has very low entropy, making it vulnerable to a brute-force attack. There is no mechanism in place to mitigate or lockout automated attempts to gain access.
- CVE-2020-11957HIGHCVSS 7.5EG 7.52020-06-09
The Bluetooth Low Energy implementation in Cypress PSoC Creator BLE 4.2 component versions before 3.64 generates a random number (Pairing Random) with significantly less entropy than the specified 128 bits during BLE pairing. This is the c…
- CVE-2020-12735CRITICALCVSS 9.8EG 9.82020-05-08
reset.php in DomainMOD 4.13.0 uses insufficient entropy for password reset requests, leading to account takeover.
- CVE-2020-1773HIGHCVSS 7.3EG 8.12020-03-27
An attacker with the ability to generate session IDs or password reset tokens, either by being able to authenticate or by exploiting OSA-2020-09, may be able to predict other users session IDs, password reset tokens and automatically gener…
- CVE-2020-25926HIGHCVSS 7.5EG 7.52021-08-18
The DNS client in InterNiche NicheStack TCP/IP 4.0.1 is affected by: Insufficient entropy in the DNS transaction id. The impact is: DNS cache poisoning (remote). The component is: dns_query_type(). The attack vector is: a specific DNS resp…
- CVE-2020-28924HIGHCVSS 7.5EG 7.52020-11-19
An issue was discovered in Rclone before 1.53.3. Due to the use of a weak random number generator, the password generator has been producing weak passwords with much less entropy than advertised. The suggested passwords depend deterministi…
- CVE-2020-29505HIGHCVSS 7.1EG 7.52022-07-11
Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.5.2, contain a Key Management Error Vulnerability.
- CVE-2020-29508MEDIUMCVSS 5.3EG 9.82022-07-11
Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.6, contain an Improper Input Validation Vulnerability.
- CVE-2020-36732MEDIUMCVSS 5.3EG 5.32023-06-12
The crypto-js package before 3.2.1 for Node.js generates random numbers by concatenating the string "0." with an integer, which makes the output more predictable than necessary.
- CVE-2020-36925CRITICALCVSS 9.8EG 9.82026-01-06
Arteco Web Client DVR/NVR contains a session hijacking vulnerability with insufficient session ID complexity that allows remote attackers to bypass authentication. Attackers can brute force session IDs within a specific numeric range to ob…
- CVE-2021-22727CRITICALCVSS 9.8EG 9.82021-07-21
A CWE-331: Insufficient Entropy vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to R8 V3.4.0.1), EVlink Parking (EVW2 / EVF2 / EV.2 all versions prior to R8 V3.4.0.1), and EVlink Smart Wallbox (EVB1A all versio…
- CVE-2021-22799LOWCVSS 3.8EG 3.82022-01-28
A CWE-331: Insufficient Entropy vulnerability exists that could cause unintended connection from an internal network to an external network when an attacker manages to decrypt the SESU proxy password from the registry. Affected Product: Sc…
- CVE-2021-29471LOWCVSS 3.7EG 3.72021-05-11
Synapse is a Matrix reference homeserver written in python (pypi package matrix-synapse). Matrix is an ecosystem for open federated Instant Messaging and VoIP. In Synapse before version 1.33.2 "Push rules" can specify conditions under whic…
- CVE-2021-31797MEDIUMCVSS 5.1EG 5.12021-09-02
The user identification mechanism used by CyberArk Credential Provider prior to 12.1 is susceptible to a local host race condition, leading to password disclosure.
- CVE-2021-31798MEDIUMCVSS 4.4EG 4.42021-09-02
The effective key space used to encrypt the cache in CyberArk Credential Provider prior to 12.1 has low entropy, and under certain conditions a local malicious user can obtain the plaintext of cache files.
- CVE-2021-33027CRITICALCVSS 9.8EG 9.82021-07-19
Sylabs Singularity Enterprise through 1.6.2 has Insufficient Entropy in a nonce.
- CVE-2021-3505MEDIUMCVSS 5.5EG 5.52021-04-19
A flaw was found in libtpms in versions before 0.8.0. The TPM 2 implementation returns 2048 bit keys with ~1984 bit strength due to a bug in the TCG specification. The bug is in the key creation algorithm in RsaAdjustPrimeCandidate(), whic…
- CVE-2021-36294CRITICALCVSS 9.8EG 9.82022-01-25
Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authentication bypass vulnerability. A remote unauthenticated attacker may exploit this vulnerability by forging a cookie to login as any user.
- CVE-2021-36320HIGHCVSS 7.5EG 9.82021-11-20
Dell Networking X-Series firmware versions prior to 3.0.1.8 contain an authentication bypass vulnerability. A remote unauthenticated attacker may potentially hijack a session and access the webserver by forging the session ID.
- CVE-2021-41615CRITICALCVSS 9.8EG 9.82022-08-08
websda.c in GoAhead WebServer 2.1.8 has insufficient nonce entropy because the nonce calculation relies on the hardcoded onceuponatimeinparadise value, which does not follow the secret-data guideline for HTTP Digest Access Authentication i…
- CVE-2021-42138HIGHCVSS 7.2EG 7.22021-12-20
A user of a machine protected by SafeNet Agent for Windows Logon may leverage weak entropy to access the encrypted credentials of any or all the users on that machine.
- CVE-2021-4238CRITICALCVSS 9.1EG 9.12022-12-27
Randomly-generated alphanumeric strings contain significantly less entropy than expected. The RandomAlphaNumeric and CryptoRandomAlphaNumeric functions always return strings containing at least one digit from 0 to 9. This significantly red…
- CVE-2021-4240LOWCVSS 2.6EG 2.62022-11-15
A vulnerability, which was classified as problematic, was found in phpservermon. This affects the function generatePasswordResetToken of the file src/psm/Service/User.php. The manipulation leads to use of predictable algorithm in random nu…
- CVE-2021-4241LOWCVSS 2.6EG 2.62022-11-15
A vulnerability, which was classified as problematic, was found in phpservermon. Affected is the function setUserLoggedIn of the file src/psm/Service/User.php. The manipulation leads to use of predictable algorithm in random number generat…
- CVE-2022-20941MEDIUMCVSS 5.3EG 5.32022-11-15
A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to access sensitive information. This vulnerability is due to missing authorizatio…
- CVE-2022-27221MEDIUMCVSS 5.9EG 5.92022-06-14
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). An attacker in machine-in-the-middle could obtain plaintext secret values by observing length differences during a series of guesses in which a stri…
- CVE-2022-31034HIGHCVSS 8.3EG 8.32022-06-27
Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. All versions of Argo CD starting with v0.11.0 are vulnerable to a variety of attacks when an SSO login is initiated from the Argo CD CLI or UI. The vulnerabilities a…
Map vulnerabilities like CWE-331 to your infrastructure
EchelonGraph correlates every CVE — across CWE-331 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →