CVE-2026-20500Medium· 5.5▾ SunlitIn Modem, there is a possible system crash due to improper input validation. This could lead to local denial of service with User execution privileges needed. User interaction is needed for exploitation. Patch ID: MOLY01810811; Issue ID:…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 30.3 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Sep 7.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
0.1%
Last analysed / modified upstream
In Modem, there is a possible system crash due to improper input validation. This could lead to local denial of service with User execution privileges needed. User interaction is needed for exploitation. Patch ID: MOLY01810811; Issue ID: MSV-9232.
mt2716_firmwaremt6835_firmwaremt6858_firmwaremt6878_firmwaremt6881_firmwaremt6897_firmwaremt6899_firmwaremt6982vb_firmwaremt6986_firmwaremt6988_firmwaremt6991_firmwaremt6993_firmwaremt8668_firmwaremt8676_firmwaremt8678_firmwaremt8755_firmwaremt8775_firmwaremt8792_firmwaremt8793_firmwaremt8863_firmwaremt8873_firmwaremt8883_firmwareRefer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-20503Medium· 5.3In Modem, there is a possible system crash due to a missing bounds check
CVE-2026-20504Medium· 5.3In Modem, there is a possible system crash due to a missing bounds check
CVE-2026-20502High· 8.4In vdec, there is a possible out of bounds write due to a missing bounds check
CVE-2026-20501High· 8.4In vdec, there is a possible out of bounds write due to a heap buffer overflow
CVE-2021-20327Medium· 6.4A specific version of the Node.js mongodb-client-encryption module does not perform correct validation of the KMS server’s certificate
CVE-2018-0227High· 7.5A vulnerability in the Secure Sockets Layer (SSL) Virtual Private Network (VPN) Client Certificate Authentication feature for Cisco Adaptive Security Appliance (ASA) could allow an unauthenticated, remote attacker to establish an SSL VPN…