VulnSea

CWE-388

CVEs classified under CWE-388, newest first.

3 CVEsRSS

CVE-2026-20168Medium· 6.5
4mo ago

A vulnerability in the web-based management interface of Cisco IoT Field Network Director could allow an authenticated, remote attacker with low privileges to retrieve files that they do not have permission to access. This vulnerabili…

A vulnerability in the web-based management interface of Cisco IoT Field Network Director could allow an authenticated, remote attacker with low privileges to retrieve files that they do not have permission to access. This vulnerabili…

Sunlitcisco · iot_field_network_directorEPSS 0.27%via NVD
CVE-2026-20006Medium· 5.8
6mo ago

A vulnerability in the TLS cryptography functionality of the Snort 3 Detection Engine of Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to unexpec…

A vulnerability in the TLS cryptography functionality of the Snort 3 Detection Engine of Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to unexpec…

Sunlitcisco · secure_firewall_threat_defenseEPSS 0.37%via NVD
CVE-2018-10624Medium· 4.3
8y ago

In Johnson Controls Metasys System Versions 8.0 and prior and BCPro (BCM) all versions prior to 3.0.2, this vulnerability results from improper error handling in HTTP-based communications with the server, which could allow an attacker to…

In Johnson Controls Metasys System Versions 8.0 and prior and BCPro (BCM) all versions prior to 3.0.2, this vulnerability results from improper error handling in HTTP-based communications with the server, which could allow an attacker to…

Sunlitjohnsoncontrols · bcproEPSS 0.80%via NVD
CWE-388 vulnerabilities (CVEs) · VulnSea