CWE-338
211 CVEs • Abstraction: Base • Likelihood of Exploit: Medium
Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
The product uses a Pseudo-Random Number Generator (PRNG) in a security context, but the PRNG's algorithm is not cryptographically strong.
CVEs (211)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
It was discovered that QtPass before 1.2.1, when using the built-in password generator, generates possibly predictable and enumerable passwords. This only applies to the QtPass GUI. |
2Debian Enigmail2Debian Linux EnigmailMay 13, 2026 Dec 27, 2017 N/A· v4 7.3 HIGH· v3 7.5 HIGH· v2 An issue was discovered in Enigmail before 1.9.9. Improper Random Secret Generation occurs because Math.Random() is used by pretty Easy privacy (pEp), aka TBE-01-001. |
Under certain circumstances, the ix86_expand_builtin function in i386.c in GNU Compiler Collection (GCC) version 4.6, 4.7, 4.8, 4.9, 5 before 5.5, and 6 before 6.4 will generate instruction sequences that clobber the sta...Show more |
The Bitcoin Proof-of-Work algorithm does not consider a certain attack methodology related to 80-byte block headers with a variety of initial 64-byte chunks followed by the same 16-byte chunk, multiple candidate root val...Show more |
1Cagintranetworks 1Getsimple Cms May 13, 2026 Apr 30, 2017 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Poor cryptographic salt initialization in admin/inc/template_functions.php in GetSimple CMS 3.3.13 allows a network attacker to escalate privileges to an arbitrary user or conduct CSRF attacks via calculation of a sessio...Show more |
wp-includes/ms-functions.php in the Multisite WordPress API in WordPress before 4.7.1 does not properly choose random numbers for keys, which makes it easier for remote attackers to bypass intended access restrictions vi...Show more |
1Oleumtech 2Sensor Wireless I/o Module Wio Dh2 Wireless GatewayMay 6, 2026 Jul 24, 2014 N/A· v4 N/A· v3 7.8 HIGH· v2 OleumTech WIO DH2 Wireless Gateway and Sensor Wireless I/O Modules rely exclusively on a time value for entropy in key generation, which makes it easier for remote attackers to defeat cryptographic protection mechanisms...Show more |
1Qnap 2Ts 239 Pro Firmware Ts 639 Pro FirmwareApr 23, 2026 Sep 21, 2009 N/A· v4 5.5 MEDIUM· v3 4.9 MEDIUM· v2 The QNAP TS-239 Pro and TS-639 Pro with firmware 2.1.7 0613, 3.1.0 0627, and 3.1.1 0815 use the rand library function to generate a certain recovery key, which makes it easier for local users to determine this key via a...Show more |
4Canonical LinuxOpensuse+1 more5Linux Enterprise Desktop Linux Enterprise ServerLinux Kernel+2 moreApr 23, 2026 Sep 18, 2009 N/A· v4 5.5 MEDIUM· v3 7.8 HIGH· v2 The get_random_int function in drivers/char/random.c in the Linux kernel before 2.6.30 produces insufficiently random numbers, which allows attackers to predict the return value, and possibly defeat protection mechanisms...Show more |
1Iomega 1Storcenter Pro Firmware Apr 23, 2026 Jul 8, 2009 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 cgi-bin/makecgi-pro in Iomega StorCenter Pro generates predictable session IDs, which allows remote attackers to hijack active sessions and gain privileges via brute force guessing attacks on the session_id parameter. |
3Canonical DebianOpenssl3Debian Linux OpensslUbuntu LinuxApr 23, 2026 May 13, 2008 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 OpenSSL 0.9.8c-1 up to versions before 0.9.8g-9 on Debian-based operating systems uses a random number generator that generates predictable numbers, which makes it easier for remote attackers to conduct brute force guess...Show more |