CWE-1391
CWE-1391 · 3 records · 1 with a public proof-of-concept
Records the NVD classes under CWE-1391, highest CVSS first.
- MEDIUM 6.8CVE-2026-100299
In Anjvision YSSD‑RTMP‑H5 firmware version 3.3.2.4, the device includes a legacy password hash on the serial console that relies on a weak DES‑based encryption.
- MEDIUM 5.3CVE-2026-88761public PoC
The Botslab G980H dash camera firmware generates the default WiFi password using predictable device information, portions of which are advertised by the product. An unauthenticated attacker within WiFi range could potentially determine the remaining password c…
- UNSCOREDCVE-2026-22094
The firmware for the EVbee DC-80 has a weak hardcoded root password, which allows attackers to login as root using the SSH daemon that is exposed to the network.