VulnSea

CWE-264

CVEs classified under CWE-264, newest first.

18 CVEsRSS

CVE-2026-76412High· 8.5
5d ago

A vulnerability in the remote diagnostics debugger of Cisco Secure FMC Software could allow an authenticated, remote attacker to enable the remote diagnostics debugger service. This vulnerability is due to an error when checking the p…

A vulnerability in the remote diagnostics debugger of Cisco Secure FMC Software could allow an authenticated, remote attacker to enable the remote diagnostics debugger service. This vulnerability is due to an error when checking the p…

TwilightCisco · Cisco Secure Firewall Management Center (FMC)EPSS 0.32%via NVD
CVE-2026-49313Medium· 5.5
1w ago

Permission control vulnerability in the app lock module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Permission control vulnerability in the app lock module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

SunlitHuawei · HarmonyOSEPSS 0.08%via NVD
CVE-2026-81644Medium· 4.3
1w ago

DoS vulnerability in the preview service module. Impact: Successful exploitation of this vulnerability may affect availability.

DoS vulnerability in the preview service module. Impact: Successful exploitation of this vulnerability may affect availability.

SunlitHuawei · HarmonyOSEPSS 0.14%via NVD
CVE-2026-49309Medium· 4.8
1w ago

Permission control vulnerability in the Settings module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Permission control vulnerability in the Settings module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

SunlitHuawei · HarmonyOSEPSS 0.08%via NVD
CVE-2026-41987Medium· 6.2
1w ago

Permission control vulnerability in the app management module. Impact: Successful exploitation of this vulnerability may affect availability.

Permission control vulnerability in the app management module. Impact: Successful exploitation of this vulnerability may affect availability.

SunlitHuawei · HarmonyOSEPSS 0.08%via NVD
CVE-2026-49312Medium· 4.0
1w ago

Permission control vulnerability in the window module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Permission control vulnerability in the window module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

SunlitHuawei · HarmonyOSEPSS 0.08%via NVD
CVE-2026-49310High· 8.6
1w ago

Permission control vulnerability in the event notification module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Permission control vulnerability in the event notification module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

TwilightHuawei · HarmonyOSEPSS 0.25%via NVD
CVE-2026-49315High· 7.1
1w ago

DoS vulnerability in the input device module. Impact: Successful exploitation of this vulnerability may affect availability.

DoS vulnerability in the input device module. Impact: Successful exploitation of this vulnerability may affect availability.

TwilightHuawei · HarmonyOSEPSS 0.08%via NVD
CVE-2026-20046High· 8.8
6mo ago

A vulnerability in task group assignment for a specific CLI command in Cisco IOS XR Software could allow an authenticated, local attacker to elevate privileges and gain full administrative control of an affected device. This vulnerabi…

A vulnerability in task group assignment for a specific CLI command in Cisco IOS XR Software could allow an authenticated, local attacker to elevate privileges and gain full administrative control of an affected device. This vulnerabi…

Twilightcisco · ios_xrEPSS 0.14%via NVD
CVE-2019-1982Medium· 5.3
6y ago

A vulnerability in the HTTP traffic filtering component of Cisco Firepower Threat Defense Software, Cisco FirePOWER Services Software for ASA, and Cisco Firepower Management Center Software could allow an unauthenticated, remote attacker…

A vulnerability in the HTTP traffic filtering component of Cisco Firepower Threat Defense Software, Cisco FirePOWER Services Software for ASA, and Cisco Firepower Management Center Software could allow an unauthenticated, remote attacker…

Sunlitcisco · firepower_services_software_for_asaEPSS 0.97%via NVD
CVE-2019-1981Medium· 5.8
6y ago

A vulnerability in the normalization functionality of Cisco Firepower Threat Defense Software, Cisco FirePOWER Services Software for ASA, and Cisco Firepower Management Center Software could allow an unauthenticated, remote attacker to b…

A vulnerability in the normalization functionality of Cisco Firepower Threat Defense Software, Cisco FirePOWER Services Software for ASA, and Cisco Firepower Management Center Software could allow an unauthenticated, remote attacker to b…

Sunlitcisco · firepower_services_software_for_asaEPSS 1.0%via NVD
CVE-2019-1980Medium· 5.3
6y ago

A vulnerability in the protocol detection component of Cisco Firepower Threat Defense Software, Cisco FirePOWER Services Software for ASA, and Cisco Firepower Management Center Software could allow an unauthenticated, remote attacker to …

A vulnerability in the protocol detection component of Cisco Firepower Threat Defense Software, Cisco FirePOWER Services Software for ASA, and Cisco Firepower Management Center Software could allow an unauthenticated, remote attacker to …

Sunlitcisco · firepower_services_software_for_asaEPSS 0.97%via NVD
CVE-2019-1978Medium· 5.8PoC
6y ago

A vulnerability in the stream reassembly component of Cisco Firepower Threat Defense Software, Cisco FirePOWER Services Software for ASA, and Cisco Firepower Management Center Software could allow an unauthenticated, remote attacker to b…

A vulnerability in the stream reassembly component of Cisco Firepower Threat Defense Software, Cisco FirePOWER Services Software for ASA, and Cisco Firepower Management Center Software could allow an unauthenticated, remote attacker to b…

Twilightcisco · firepower_services_software_for_asaEPSS 9.4%via NVD
CVE-2019-1972Medium· 6.7
7y ago

A vulnerability the Cisco Enterprise NFV Infrastructure Software (NFVIS) restricted CLI could allow an authenticated, local attacker with valid administrator-level credentials to elevate privileges and execute arbitrary commands on the u…

A vulnerability the Cisco Enterprise NFV Infrastructure Software (NFVIS) restricted CLI could allow an authenticated, local attacker with valid administrator-level credentials to elevate privileges and execute arbitrary commands on the u…

Sunlitcisco · enterprise_nfv_infrastructure_softwareEPSS 0.50%via NVD
CVE-2018-0453High· 8.2
7y ago

A vulnerability in the Sourcefire tunnel control channel protocol in Cisco Firepower System Software running on Cisco Firepower Threat Defense (FTD) sensors could allow an authenticated, local attacker to execute specific CLI commands wi…

A vulnerability in the Sourcefire tunnel control channel protocol in Cisco Firepower System Software running on Cisco Firepower Threat Defense (FTD) sensors could allow an authenticated, local attacker to execute specific CLI commands wi…

Twilightcisco · secure_firewall_threat_defenseEPSS 0.47%via NVD
CVE-2015-3246Medium· 5.1CISA KEVPoC
11y ago

libuser before 0.56.13-8 and 0.60 before 0.60-7, as used in the userhelper program in the usermode package, directly modifies /etc/passwd, which allows local users to cause a denial of service (inconsistent file state) by causing an erro…

libuser before 0.56.13-8 and 0.60 before 0.60-7, as used in the userhelper program in the usermode package, directly modifies /etc/passwd, which allows local users to cause a denial of service (inconsistent file state) by causing an erro…

Midnightredhat · libuserEPSS 8.8%via NVD
CVE-2013-0335High· 7.6
13y ago

OpenStack Compute (Nova) Grizzly, Folsom (2012.2), and Essex (2012.1) allows remote authenticated users to gain access to a VM in opportunistic circumstances by using the VNC token for a deleted VM that was bound to the same VNC port.

OpenStack Compute (Nova) Grizzly, Folsom (2012.2), and Essex (2012.1) allows remote authenticated users to gain access to a VM in opportunistic circumstances by using the VNC token for a deleted VM that was bound to the same VNC port.

Twilightopenstack · essexEPSS 2.1%via NVD
CVE-1999-1383Medium· 4.6
30y ago

(1) bash before 1.14.7, and (2) tcsh 6.05 allow local users to gain privileges via directory names that contain shell metacharacters (` back-tick), which can cause the commands enclosed in the directory name to be executed when the shell…

(1) bash before 1.14.7, and (2) tcsh 6.05 allow local users to gain privileges via directory names that contain shell metacharacters (` back-tick), which can cause the commands enclosed in the directory name to be executed when the shell…

SunlitEPSS 0.40%via NVD
CWE-264 vulnerabilities (CVEs) · VulnSea