CWE-321 관련 취약점
같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.
CWE-321 — 주요 취약점
악용이 확인된 것을 먼저 보여줍니다.
● 실제 악용이 확인됨CVE-2025-30406Gladinet CentreStack through 16.1.10296.56315 (fixed in 16.4.10315.56368) has a deserialization vuln…94.3%심각9.8● 실제 악용이 확인됨CVE-2016-4437Apache Shiro before 1.2.5, when a cipher key has not been configured for the "remember me" feature, …93.0%심각9.8CVE-2026-86708ZohoCorp ManageEngine Applications Manager versions 182200 and below were vulnerable to exposure of …1.2%심각10.0CVE-2026-75431PowerJob Server version 5.1.2 (and likely earlier) uses a predictable JWT signing key for HS256-base…0.8%심각9.1CVE-2026-52727lxc-ci contains continuous integration and image-build scripts for LXC. Prior to the 2026-05-28 Arch…0.6%높음7.2CVE-2026-28326SolarWinds Access Rights Manager was reported to be affected by an unauthenticated remote code execu…0.5%높음8.8CVE-2026-90945Crawlab through 0.6.3 uses a hard-coded HMAC-SHA256 secret for JWT token signing that cannot be over…0.5%심각9.3CVE-2026-89026The Issabel Framework, the web framework supporting Issabel PBX software, before commit b97dbaf cont…0.5%심각9.3
전체 목록
40건
CVE-2026-81855A hardcoded cryptographic client authentication key vulnerability exists in the robot testing framework compon…0.5%심각9.3
CVE-2026-86241A weakness has been identified in liufee FeehiCMS up to 2.1.1. This impacts an unknown function of the file en…0.5%낮음2.1
CVE-2026-78225A hardcoded cryptographic server key vulnerability exists in the deployer-ng Update Controller component of Wä…0.4%심각9.5
CVE-2026-103055AiSOC versions 7.5.0 before 12.0.0 use a hard-coded constant for JWT verification in the realtime WebSocket an…0.4%높음8.7
CVE-2026-81478Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains a Use of Hard-coded Cryptographic K…0.4%높음8.1
CVE-2026-47097AJA HELO Plus firmware before 2.1.7 contains an information disclosure vulnerability that allows unauthenticat…0.4%높음8.7
CVE-2026-78481Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00,…0.3%보통6.5
CVE-2026-90510A security vulnerability has been detected in dromara orion-visor up to 2.5.7. This affects the function HostK…0.3%보통5.5
CVE-2026-87929MaxSite CMS through 109.6 ships with a hardcoded session encryption key in application/config/config.php that …0.3%심각9.3
CVE-2026-71449: Use of Hard-coded Cryptographic Key vulnerability in Johnson Controls EasyIO FS32 allows : Retrieve Embedded…0.3%심각9.3
CVE-2026-82827Hitachi Coding Software Suite contains a vulnerability related to Use of Hard-coded Cryptographic Key. The Har…0.3%심각9.3
CVE-2026-18181IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to bypass authentic…0.2%높음8.1
CVE-2026-18330A hard-coded cryptographic key vulnerability exists in the web module of TP-Link Archer AX55 v4. A LAN attacke…0.2%보통6.1
CVE-2026-82929mH-DEVELOPER smart home module uses the same hard-coded SSH host keys on every device, with no per-device key …0.2%보통6.3
CVE-2026-10764Information disclosure in BVMS 4.5 up to 12.3 including allows man-in-the-middle attackers to gain unauthorize…0.2%높음8.7
CVE-2026-102241A vulnerability was determined in Netcore NAP930 0.1.241010.141410. This vulnerability affects unknown code of…0.2%낮음2.0
CVE-2026-79735Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00,…0.2%보통4.4
CVE-2026-53939OpenIDC/cjose is a C library implementing the Javascript Object Signing and Encryption (JOSE). In versions 0.6…0.2%심각9.1
CVE-2026-78486Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00,…0.2%보통4.4
CVE-2026-18154IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to obtain sensitive…0.2%높음8.0
CVE-2026-75558The Botslab G980H dash camera firmware uses a hard-coded cryptographic key and initialization vector to protec…0.2%보통6.0
CVE-2026-75553Smartphone application Tohoku Electric Power "Yorisou e Net" uses a hard-coded cryptographic key, which may al…0.1%낮음2.4
CVE-2026-80114PassMark PerformanceTest before 11.1 build 1012, BurnInTest before 11.1 build 1000, and OSForensics before 11.…0.1%높음8.5
CVE-2026-81326QND uses a hard-coded cryptographic key, which may allow a local attacker who is logged in to a Windows PC whe…0.1%보통6.8
CVE-2026-81821The vulnerability, if exploited, could allow a miscreant with read access to PIMBoards project files to decryp…0.1%높음8.3
CVE-2026-80057Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00,…0.1%보통5.5
CVE-2026-78487Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00,…0.1%보통5.5
CVE-2026-80167Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00,…0.1%보통5.5
CVE-2026-94591Armatura One stores database and message-broker credentials in an install configuration file, encrypting them …0.1%높음8.6
CVE-2026-79762Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. …0.1%보통5.5
CVE-2026-50606A vulnerability has been identified in the Acer System Monitoring component included with NitroSense and Preda…0.1%낮음1.2
CVE-2026-50603A vulnerability has been identified in the Acer Agent Service component included with NitroSense and PredatorS…0.1%보통4.9
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.