CWE-798: CWE-798
Yearly Trend
Top Affected Vendors
All CWE-798 CVEs (456)
The Kaba exos 9300 datapoint server contains hardcoded credentials for four users, allowing unauthorized access to door access control systems. Attack...
Jan 26, 2026This vulnerability allows unauthenticated attackers to send arbitrary status information to the Kaba exos 9300 access control system via an exposed RP...
Jan 26, 2026This CVE reveals hard-coded cryptographic secrets in exos 9300 software components, allowing attackers to decrypt sensitive data like user PINs stored...
Jan 26, 2026This CVE describes a critical vulnerability in KAON CG3000TC and CG3000T routers where hard-coded credentials are embedded in the firmware in clear te...
Jan 9, 2026This vulnerability involves hard-coded cryptographic keys in the Admin UI of EZCast Pro II, allowing attackers to bypass authorization checks and gain...
Dec 10, 2025Deck Mate 2 card shufflers contain hard-coded administrative credentials for multiple enabled services (SSH, HTTP, Telnet, SMB, X11). Attackers with p...
Nov 3, 2025About CWE-798 (CWE-798)
Our database tracks 456 CVEs classified as CWE-798, with 262 rated critical and 146 rated high severity. The average CVSS score for CWE-798 vulnerabilities is 8.8.
External reference: View CWE-798 on MITRE CWE →
Monitor CWE-798 Vulnerabilities
Get alerted when new CWE-798 CVEs affect your infrastructure.
Start Monitoring Free