Fallos del tipo CWE-912

79 resultados
CVE-2024-10773CRITICALSICK InspectorP61x, SICK InspectorP62x and SICK TiM3xx are vulnerable for pass-the-hash attacksEPSS 0.6%CVE-2023-42134MEDIUMPAX Android based POS devices with PayDroid_8.1.0_Sagittarius_V11.1.45_20230314 or earlier can allow the signed partition overwrite and subsEPSS 0.6%CVE-2025-58778HIGHMultiple versions of RG-EST300 provided by Ruijie Networks provide SSH server functionality. It is not documented in the manual, and enabledEPSS 0.5%CVE-2025-11673HIGHPiExtract |SOOP-CLM - Hidden FunctionalityEPSS 0.5%CVE-2021-36403MEDIUMIn Moodle, in some circumstances, email notifications of messages could have the link back to the original message hidden by HTML, which mayEPSS 0.5%CVE-2024-22044HIGHA vulnerability has been identified in SENTRON 3KC ATC6 Expansion Module Ethernet (3KC9000-8TL75) (All versions). Affected devices expose anEPSS 0.5%CVE-2025-48418MEDIUMA hidden functionality vulnerability in Fortinet FortiAnalyzer 7.6.0 through 7.6.3, FortiAnalyzer 7.4.0 through 7.4.7, FortiAnalyzer 7.2.0 tEPSS 0.5%CVE-2025-48416HIGHBackdoor Functionality via SSH in eCharge Hardy Barth cPH2 / cPP2 charging stationsEPSS 0.5%CVE-2025-0675HIGHElber Communications Equipment Hidden FunctionalityEPSS 0.5%CVE-2026-1741HIGHEFM ipTIME A8004T Debug d.cgi httpcon_check_session_url backdoorEPSS 0.5%CVE-2025-1204HIGHThe "update" binary in the firmware of the affected product sends attempts to mount to a hard-coded, routable IP address, bypassing existingEPSS 0.4%CVE-2026-41446CRITICALWattBox 800 & 820 Series < 2.10.0.0 RCE via Diagnostic EndpointsEPSS 0.4%CVE-2026-31847HIGHHidden Functionality Enables Remote Telnet Activation via /goform/setSysTools in Nexxt Nebula 300+EPSS 0.4%CVE-2024-37990HIGHA vulnerability has been identified in SIMATIC Reader RF610R CMIIT (6GT2811-6BC10-2AA0) (All versions < V4.2), SIMATIC Reader RF610R ETSI (6EPSS 0.4%CVE-2025-47729LOWThe TeleMessage archiving backend through 2025-05-05 holds cleartext copies of messages from TM SGNL (aka Archive Signal) app users, which iEPSS 0.4%KEVCVE-2026-33280HIGHHidden functionality issue exists in BUFFALO Wi-Fi router products, which may allow an attacker to gain access to the product’s debugging fuEPSS 0.4%CVE-2017-20083MEDIUMJUNG Smart Visu Server SSH Server backdoorEPSS 0.4%CVE-2017-20082MEDIUMJUNG Smart Visu Server backdoorEPSS 0.4%CVE-2017-20084MEDIUMJUNG Smart Visu Server KNX Group Address backdoorEPSS 0.4%CVE-2025-46267MEDIUMHidden functionality issue exists in WRC-BE36QS-B and WRC-W701-B. If exploited, the product's hidden debug function may be enabled by a remoEPSS 0.3%