columbiaweather has 2 CVEs on record. The median CVSS is 8.4 (high).
CVEs per month
Last 12 months, by publish date
1125/111225/120126/010226/020326/030426/040526/050626/060726/070826/080926/091026/10
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 8.4
- Publish → KEV
- —
- Last 90 days
- 0 prev 0
2
Total CVEs
0
Critical
0
CISA KEV
0
Exploited
Worst active — by depth score
columbiaweather vulnerabilities
CVEs affecting columbiaweather, newest first. Open any entry for full detail, references, and exploit status.
2 CVEsRSS
CVE-2025-66620High· 8.0An unused webshell in MicroServer allows unlimited login attempts, with sudo rights on certain files and directories
An unused webshell in MicroServer allows unlimited login attempts, with sudo rights on certain files and directories. An attacker with admin access to MicroServer can gain limited shell access, enabling persistence through reverse shells…
▾ Twilightcolumbiaweather · weather_microserver_firmwareEPSS 0.45%via NVD
CVE-2025-61939High· 8.8An unused function in MicroServer can start a reverse SSH connection to a vendor registered domain, without mutual authentication
An unused function in MicroServer can start a reverse SSH connection to a vendor registered domain, without mutual authentication. An attacker on the local network with admin access to the web server, and the ability to manipulate DNS re…
▾ Twilightcolumbiaweather · weather_microserver_firmwareEPSS 0.27%via NVD