CWE-521
263 CVEs • Abstraction: Base
Weak Password Requirements
The product does not require that users should have strong passwords, which makes it easier for attackers to compromise user accounts.
CVEs (263)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Riverbed RiOS through 9.6.0 has a weak default password for the secure vault, which makes it easier for physically proximate attackers to defeat the secure-vault protection mechanism by leveraging knowledge of the passwo...Show more |
Riverbed RiOS through 9.6.0 does not require a bootloader password, which makes it easier for physically proximate attackers to defeat the secure-vault protection mechanism via a crafted boot. NOTE: the vendor believes t...Show more |
1Siemens 1Ruggedcom Rugged Operating System Apr 29, 2026 Apr 28, 2012 N/A· v4 N/A· v3 8.5 HIGH· v2 RuggedCom Rugged Operating System (ROS) before 3.3 has a factory account with a password derived from the MAC Address field in a banner, which makes it easier for remote attackers to obtain access by performing a calcula...Show more |