CWE-331— Insufficient Entropy
122 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-331page 2 of 3
- CVE-2022-33738HIGHCVSS 7.5EG 7.52022-07-06
OpenVPN Access Server before 2.11 uses a weak random generator used to create user session token for the web portal
- CVE-2022-33756HIGHCVSS 7.5EG 7.52022-06-16
CA Automic Automation 12.2 and 12.3 contain an entropy weakness vulnerability in the Automic AutomationEngine that could allow a remote attacker to potentially access sensitive data.
- CVE-2022-33989MEDIUMCVSS 5.3EG 5.32022-08-15
dproxy-nexgen (aka dproxy nexgen) uses a static UDP source port (selected randomly only at boot time) in upstream queries sent to DNS resolvers. This allows DNS cache poisoning because there is not enough entropy to prevent traffic injecti…
- CVE-2022-34294CRITICALCVSS 9.8EG 9.82022-08-15
totd 1.5.3 uses a fixed UDP source port in upstream queries sent to DNS resolvers. This allows DNS cache poisoning because there is not enough entropy to prevent traffic injection attacks.
- CVE-2022-34746MEDIUMCVSS 5.9EG 5.92022-09-20
An insufficient entropy vulnerability caused by the improper use of randomness sources with low entropy for RSA key pair generation was found in Zyxel GS1900 series firmware versions prior to V2.70. This vulnerability could allow an unauth…
- CVE-2022-37401HIGHCVSS 8.8EG 8.82022-08-15
Apache OpenOffice supports the storage of passwords for web connections in the user's configuration database. The stored passwords are encrypted with a single master key provided by the user. A flaw in OpenOffice existed where master key w…
- CVE-2022-43755HIGHCVSS 7.1EG 7.12023-02-07
A Insufficient Entropy vulnerability in SUSE Rancher allows attackers that gained knowledge of the cattle-token to continue abusing this even after the token was renewed. This issue affects: SUSE Rancher Rancher versions prior to 2.6.10; R…
- CVE-2023-20107HIGHCVSS 7.5EG 7.52023-03-23
A vulnerability in the deterministic random bit generator (DRBG), also known as pseudorandom number generator (PRNG), in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software for Cisco ASA 5506-…
- CVE-2023-26154MEDIUMCVSS 5.9EG 5.92023-12-06
Versions of the package pubnub before 7.4.0; all versions of the package com.pubnub:pubnub; versions of the package pubnub before 6.19.0; all versions of the package github.com/pubnub/go; versions of the package github.com/pubnub/go/v7 bef…
- CVE-2023-31176HIGHCVSS 7.5EG 7.52023-11-30
An Insufficient Entropy vulnerability in the Schweitzer Engineering Laboratories SEL-451 could allow an unauthenticated remote attacker to brute-force session tokens and bypass authentication. See product Instruction Manual Appendix A …
- CVE-2023-31582HIGHCVSS 7.5EG 7.52023-10-25
jose4j before v0.9.3 allows attackers to set a low iteration count of 1000 or less.
- CVE-2023-3325HIGHCVSS 8.1EG 8.12023-06-20
The CMS Commander plugin for WordPress is vulnerable to authorization bypass due to the use of an insufficiently unique cryptographic signature on the 'cmsc_add_site' function in versions up to, and including, 2.287. This makes it possible…
- CVE-2023-34973LOWCVSS 3.1EG 3.12023-08-24
An insufficient entropy vulnerability has been reported to affect QNAP operating systems. If exploited, the vulnerability possibly allows remote users to predict secret via unspecified vectors. We have already fixed the vulnerability in t…
- CVE-2023-36610MEDIUMCVSS 5.9EG 5.92023-07-03
The affected TBox RTUs generate software security tokens using insufficient entropy. The random seed used to generate the software tokens is not initialized correctly, and other parts of the token are generated using predictable time-b…
- CVE-2023-37822HIGHCVSS 8.2EG 8.22024-10-03
The Eufy Homebase 2 before firmware version 3.3.4.1h creates a dedicated wireless network for its ecosystem, which serves as a proxy to the end user's primary network. The WPA2-PSK generation of this dedicated network is flawed and solely …
- CVE-2023-38357MEDIUMCVSS 5.3EG 5.32023-08-01
Session tokens in RWS WorldServer 11.7.3 and earlier have a low entropy and can be enumerated, leading to unauthorized access to user sessions.
- CVE-2023-4344CRITICALCVSS 9.8EG 9.82023-08-15
Broadcom RAID Controller web interface is vulnerable to insufficient randomness due to improper use of ssl.rnd to setup CIM connection
- CVE-2023-46648HIGHCVSS 8.3EG 8.32023-12-21
An insufficient entropy vulnerability was identified in GitHub Enterprise Server (GHES) that allowed an attacker to brute force a user invitation to the GHES Management Console. To exploit this vulnerability, an attacker would need knowled…
- CVE-2023-49599CRITICALCVSS 9.8EG 9.82024-01-10
An insufficient entropy vulnerability exists in the salt generation functionality of WWBN AVideo dev master commit 15fed957fb. A specially crafted series of HTTP requests can lead to privilege escalation. An attacker can gather system info…
- CVE-2023-49927MEDIUMCVSS 5.3EG 5.32024-06-05
An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, Exynos 990, Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 9110, Exynos W920, Exynos Modem 512…
- CVE-2024-20331MEDIUMCVSS 6.8EG 6.82024-10-23
A vulnerability in the session authentication functionality of the Remote Access SSL VPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote a…
- CVE-2024-22473MEDIUMCVSS 6.8EG 6.82024-02-21
TRNG is used before initialization by ECDSA signing driver when exiting EM2/EM3 on Virtual Secure Vault (VSE) devices. This defect may allow Signature Spoofing by Key Recreation.This issue affects Gecko SDK through v4.4.0.
- CVE-2024-25407HIGHCVSS 7.5EG 7.52024-02-13
SteVe v3.6.0 was discovered to use predictable transaction ID's when receiving a StartTransaction request. This vulnerability can allow attackers to cause a Denial of Service (DoS) by using the predicted transaction ID's to terminate other…
- CVE-2024-25730CRITICALCVSS 9.8EG 9.82024-02-23
Hitron CODA-4582 and CODA-4589 devices have default PSKs that are generated from 5-digit hex values concatenated with a "Hitron" substring, resulting in insufficient entropy (only about one million possibilities).
- CVE-2024-26329MEDIUMCVSS 6.2EG 6.22024-04-05
Chilkat before v9.5.0.98, allows attackers to obtain sensitive information via predictable PRNG in ChilkatRand::randomBytes function.
- CVE-2024-3411CRITICALCVSS 9.1EG 9.12024-04-30
Implementations of IPMI Authenticated sessions does not provide enough randomness to protect from session hijacking, allowing an attacker to use either predictable IPMI Session ID or weak BMC Random Number to bypass security controls using…
- CVE-2024-36400CRITICALCVSS 9.4EG 9.42024-06-04
nano-id is a unique string ID generator for Rust. Affected versions of the nano-id crate incorrectly generated IDs using a reduced character set in the `nano_id::base62` and `nano_id::base58` functions. Specifically, the `base62` function …
- CVE-2024-38270MEDIUMCVSS 5.3EG 5.32024-09-10
An insufficient entropy vulnerability caused by the improper use of a randomness function with low entropy for web authentication tokens generation exists in the Zyxel GS1900-10HP firmware version V2.80(AAZI.0)C0. This vulnerability could …
- CVE-2024-47945CRITICALCVSS 9.8EG 9.12024-10-15
The devices are vulnerable to session hijacking due to insufficient entropy in its session ID generation algorithm. The session IDs are predictable, with only 32,768 possible values per user, which allows attackers to pre-generate valid…
- CVE-2024-52322MEDIUMCVSS 5.5EG 5.52025-04-05
WebService::Xero 0.11 and earlier for Perl uses the rand() function as the default source of entropy, which is not cryptographically secure, for cryptographic functions. Specifically WebService::Xero uses the Data::Random library which sp…
- CVE-2024-53522HIGHCVSS 7.5EG 7.52025-01-07
Bangkok Medical Software HOSxP XE v4.64.11.3 was discovered to contain a hardcoded IDEA Key-IV pair in the HOSxPXE4.exe and HOS-WIN32.INI components. This allows attackers to access sensitive information.
- CVE-2024-56370MEDIUMCVSS 6.5EG 6.52025-04-05
Net::Xero 0.044 and earlier for Perl uses the rand() function as the default source of entropy, which is not cryptographically secure, for cryptographic functions. Specifically Net::Xero uses the Data::Random library which specifically st…
- CVE-2024-57868MEDIUMCVSS 5.5EG 5.52025-04-05
Web::API 2.8 and earlier for Perl uses the rand() function as the default source of entropy, which is not cryptographically secure, for cryptographic functions. Specifically Web::API uses the Data::Random library which specifically states…
- CVE-2024-58036MEDIUMCVSS 5.5EG 5.52025-04-05
Net::Dropbox::API 1.9 and earlier for Perl uses the rand() function as the default source of entropy, which is not cryptographically secure, for cryptographic functions. Specifically Net::Dropbox::API uses the Data::Random library which s…
- CVE-2024-58040CRITICALCVSS 9.1EG 9.12025-09-30
Crypt::RandomEncryption for Perl version 0.01 uses insecure rand() function during encryption.
- CVE-2024-58134HIGHCVSS 8.1EG 8.12025-05-03
Mojolicious versions from 0.999922 for Perl uses a hard coded string, or the application's class name, as an HMAC session cookie secret by default. These predictable default secrets can be exploited by an attacker to forge session cookies…
- CVE-2024-6508HIGHCVSS 8.0EG 8.02024-08-21
An insufficient entropy vulnerability was found in the Openshift Console. In the authorization code type and implicit grant type, the OAuth2 protocol is vulnerable to a Cross-Site Request Forgery (CSRF) attack if the state parameter is use…
- CVE-2024-8796MEDIUMCVSS 5.3EG 5.32024-09-17
Under the default configuration, Devise-Two-Factor versions >= 2.2.0 & < 6.0.0 generate TOTP shared secrets that are 120 bits instead of the 128-bit minimum defined by RFC 4226. Using a shared secret shorter than the minimum to generate a …
- CVE-2024-9055MEDIUMCVSS 4.2EG 4.22025-03-17
The DPA countermeasures on Silicon Labs' Series 2 devices are not reseeded periodically as they should be. This may allow an attacker to eventually extract secret keys through a DPA attack.
- CVE-2025-13399HIGHCVSS 8.8EG 8.82026-01-29
A weakness in the web interface’s application layer encryption in VX800v v1.0 allows an adjacent attacker to brute force the weak AES key and decrypt intercepted traffic. Successful exploitation requires network proximity but no authenti…
- CVE-2025-14261HIGHCVSS 7.1EG 7.12025-12-08
The Litmus platform uses JWT for authentication and authorization, but the secret being used for signing the JWT is only 6 bytes long at its core, which makes it extremely easy to crack.
- CVE-2025-14972MEDIUMCVSS 4.1EG 4.12026-05-15
* Countermeasures for DPA within SYMCRYPTO engine on SixG301xxx devices are not sufficiently random and will eventually repeat. * KSU keys using SYMCRYPTO will be impacted by this vulnerability.
- CVE-2025-15387HIGHCVSS 8.8EG 8.82025-12-31
VPN Firewall developed by QNO Technology has a Insufficient Entropy vulnerability, allowing unauthenticated remote attackers to obtain any logged-in user session through brute-force attacks and subsequently log into the system.
- CVE-2025-1828HIGHCVSS 8.8EG 8.82025-03-11
Crypt::Random Perl package 1.05 through 1.55 may use rand() function, which is not cryptographically strong, for cryptographic functions. If the Provider is not specified and /dev/urandom or an Entropy Gathering Daemon (egd) service is…
- CVE-2025-1860HIGHCVSS 7.7EG 7.72025-03-28
Data::Entropy for Perl 0.007 and earlier use the rand() function as the default source of entropy, which is not cryptographically secure, for cryptographic functions.
- CVE-2025-27551MEDIUMCVSS 4.0EG 4.02025-03-26
DBIx::Class::EncodedColumn use the rand() function, which is not cryptographically secure to salt password hashes. This vulnerability is associated with program files lib/DBIx/Class/EncodedColumn/Digest.pm. This issue affects DBIx::Class…
- CVE-2025-27552MEDIUMCVSS 4.0EG 4.02025-03-26
DBIx::Class::EncodedColumn use the rand() function, which is not cryptographically secure to salt password hashes. This vulnerability is associated with program files Crypt/Eksblowfish/Bcrypt.pm. This issue affects DBIx::Class::EncodedCo…
- CVE-2025-2814MEDIUMCVSS 4.0EG 4.02025-04-13
Crypt::CBC versions between 1.21 and 3.05 for Perl may use the rand() function as the default source of entropy, which is not cryptographically secure, for cryptographic functions. This issue affects operating systems where "/dev/urandom'…
- CVE-2025-29311HIGHCVSS 7.5EG 7.52025-03-24
Limited secret space in LLDP packets used in onos v2.7.0 allows attackers to obtain the private key via a bruteforce attack. Attackers are able to leverage this vulnerability into creating crafted LLDP packets.
- CVE-2025-32898MEDIUMCVSS 4.7EG 4.72025-12-05
The KDE Connect verification-code protocol before 2025-04-18 uses only 8 characters and therefore allows brute-force attacks. This affects KDE Connect before 1.33.0 on Android, KDE Connect before 25.04 on desktop, KDE Connect before 0.5 on…
Map vulnerabilities like CWE-331 to your infrastructure
EchelonGraph correlates every CVE — across CWE-331 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →