18466 Total CVEs
9986 AI Analyzed
280 CISA KEV
3815 Critical
All Vendors
Showing 14251-14300 of 18466 CVEs Page 286 of 370
CVE-2025-41767
7.2
Unknown Multiple Products

A high-privileged remote attacker can fully compromise the device by abusing an update signature bypass vulnerability in the wwwupdate

2026-03-10
CVE-2025-41766
Analyzed
8.8
Unknown wwwubr Service

A low-privileged remote attacker can trigger a stack-based buffer overflow via a crafted HTTP POST request using the ubr-network method resulting in f...

2026-03-10
CVE-2025-41765
Analyzed
9.1
Unknown wwwupload.cgi Service

Insufficient authorization in the wwwupload.cgi endpoint allows unauthenticated attackers to upload arbitrary data, including system backups, HTTPS ce...

2026-03-10
CVE-2025-41764
Analyzed
9.1
Unknown wwwupdate.cgi Service

An authorization bypass in the wwwupdate.cgi endpoint allows unauthenticated remote attackers to upload and execute arbitrary updates, potentially lea...

2026-03-10
CVE-2025-41761
Analyzed
7.8
Microsoft Windows (UBR Service)

A low‑privileged local attacker who gains access to the UBR service account (e

2026-03-10
CVE-2025-41758
8.8
Unknown Multiple Products

A low-privileged remote attacker can exploit an arbitrary file write vulnerability in the wwupload

2026-03-10
CVE-2025-41757
8.8
Arch Multiple Products

A low-privileged remote attacker can abuse the backup restore functionality of UBR (ubr-restore) which runs with elevated privileges and does not vali...

2026-03-10
CVE-2025-41756
Analyzed
8.1
Unknown wwwubr Service

A low-privileged remote attacker can exploit the ubr-editfile method in wwwubr

2026-03-10
CVE-2025-41744
Analyzed
9.1
Sprecher Automations Multiple Products

Sprecher Automations SPRECON-E series uses default cryptographic keys that allow an unprivileged remote attacker to access all encrypted communication...

2025-12-04
CVE-2025-41742
Analyzed
9.8
Sprecher Automations Multiple Products

Sprecher Automations SPRECON-E-C,  SPRECON-E-P, SPRECON-E-T3 is vulnerable to attack by an unauthorized remote attacker via default cryptographic keys...

2025-12-04
CVE-2025-41738
Analyzed
7.5
Unknown Multiple Products

An unauthenticated remote attacker may cause the visualisation server of the CODESYS Control runtime system to access a resource with a pointer of wro...

2025-12-02
CVE-2025-41737
Analyzed
7.5
HP Multiple Products

Due to webserver misconfiguration an unauthenticated remote attacker is able to read the source of php modules

2025-11-19
CVE-2025-41736
Analyzed
8.8
HP Multiple Products

A low privileged remote attacker can upload a new or overwrite an existing python script by using a path traversal of the target filename in php resul...

2025-11-19
CVE-2025-41735
8.8
Unknown Multiple Products

A low privileged remote attacker can upload any file to an arbitrary location due to missing file check resulting in remote code execution

2025-11-19
CVE-2025-41734
Analyzed
9.8
HP Multiple Products

An unauthenticated remote attacker can execute arbitrary php files and gain full access of the affected devices.

2025-11-19
CVE-2025-41733
Analyzed
9.8
Unknown Multiple Products

The commissioning wizard on the affected devices does not validate if the device is already initialized. An unauthenticated remote attacker can constr...

2025-11-19
CVE-2025-41732
8.8
Unknown Multiple Products

An unauthenticated remote attacker can abuse unsafe sscanf calls within the check_cookie() function to write arbitrary data into fixed-size stack buff...

2025-12-11
CVE-2025-41731
7.4
Unknown Multiple Products

A vulnerability was identified in the password generation algorithm when accessing the debug-interface

2025-11-11
CVE-2025-41730
8.8
Unknown Multiple Products

An unauthenticated remote attacker can abuse unsafe sscanf calls within the check_account() function to write arbitrary data into fixed-size stack buf...

2025-12-11
CVE-2025-41729
Analyzed
7.5
Unknown Multiple Products

An unauthenticated remote attacker can send a specially crafted Modbus read command to the device which leads to a denial of service

2025-11-25
CVE-2025-41727
7.8
Device Multiple Products

A local low privileged attacker can bypass the authentication of the Device Manager user interface, allowing them to perform privileged operations and...

2026-01-28
CVE-2025-41726
8.8
Device Multiple Products

A low privileged remote attacker can execute arbitrary code by sending specially crafted calls to the web service of the Device Manager or locally via...

2026-01-28
CVE-2025-41724
7.5
Unknown Multiple Products

An unauthenticated remote attacker can crash the wscserver by sending incomplete SOAP requests

2025-10-22
CVE-2025-41723
Analyzed
9.8
Intel Multiple Products

The importFile SOAP method is vulnerable to a directory traversal attack. An unauthenticated remote attacker bypass the path restriction and upload fi...

2025-10-22
CVE-2025-41722
7.5
Unknown Multiple Products

The wsc server uses a hard-coded certificate to check the authenticity of SOAP messages

2025-10-22
CVE-2025-41719
8.8
Unknown Multiple Products

A low privileged remote attacker can corrupt the webserver users storage on the device by setting a sequence of unsupported characters which leads to...

2025-10-22
CVE-2025-41717
Analyzed
8.8
Unknown Multiple Products

An unauthenticated remote attacker can trick a high privileged user into uploading a malicious payload via the config-upload endpoint, leading to code...

2026-01-13
CVE-2025-41715
Analyzed
9.8
Intel Multiple Products

The database for the web application is exposed without authentication, allowing an unauthenticated remote attacker to gain unauthorized access and po...

2025-09-24
CVE-2025-41714
8.8
Unknown Multiple Products

The upload endpoint insufficiently validates the 'Upload-Key' request header

2025-09-10
CVE-2025-41709
Analyzed
9.8
Unknown Multiple Products

A critical vulnerability exists in a specific component of various products, allowing an attacker to cause a major impact via an unspecified vector. T...

2026-03-11
CVE-2025-41708
7.4
Unknown Multiple Products

Due to an unsecure default configuration HTTP is used instead of HTTPS for the web interface

2025-09-08
CVE-2025-41702
Analyzed
9.8
Unknown Multiple Products

The JWT secret key is embedded in the egOS WebGUI backend and is readable to the default user. An unauthenticated remote attacker can generate valid H...

2025-08-26
CVE-2025-41701
7.8
Unknown Multiple Products

An unauthenticated attacker can trick a local user into executing arbitrary commands by opening a deliberately manipulated project file with an affect...

2025-09-09
CVE-2025-41700
7.8
Unknown Multiple Products

An unauthenticated attacker can trick a local user into executing arbitrary code by opening a deliberately manipulated CODESYS project file with a COD...

2025-12-02
CVE-2025-41699
8.8
Unknown Multiple Products

An low privileged remote attacker with an account for the Web-based management can change the system configuration to perform a command injection as r...

2025-10-14
CVE-2025-41698
7.8
Unknown Multiple Products

A low privileged local attacker can interact with the affected service although user-interaction should not be allowed

2025-08-05
CVE-2025-41691
Analyzed
7.5
Unknown Multiple Products

An unauthenticated remote attacker may trigger a NULL pointer dereference in the affected CODESYS Control runtime systems by sending specially crafted...

2025-08-05
CVE-2025-41690
7.4
Unknown Multiple Products

A low-privileged attacker in bluetooth range may be able to access the password of a higher-privilege user (Maintenance) by viewing the device’s event...

2025-09-02
CVE-2025-41688
Analyzed
7.2
Unknown Multiple Products

A high privileged remote attacker can execute arbitrary OS commands using an undocumented method allowing to escape the implemented LUA sandbox

2025-07-31
CVE-2025-41687
Analyzed
9.8
Unknown Multiple Products

An unauthenticated remote attacker may use a stack based buffer overflow in the u-link Management API to gain full access on the affected devices.

2025-07-23
CVE-2025-41686
7.8
Unknown Multiple Products

A low-privileged local attacker can exploit improper permissions on nssm

2025-08-12
CVE-2025-41684
Analyzed
8.8
Unknown Multiple Products

An authenticated remote attacker can execute arbitrary commands with root privileges on affected devices due to lack of improper sanitizing of user in...

2025-07-23
CVE-2025-41683
8.8
Unknown Multiple Products

An authenticated remote attacker can execute arbitrary commands with root privileges on affected devices due to lack of improper sanitizing of user in...

2025-07-23
CVE-2025-41682
Analyzed
8.8
Unknown Multiple Products

An authenticated, low-privileged attacker can obtain credentials stored on the charge controller including the manufacturer password

2025-09-08
CVE-2025-41672
Analyzed
10
Unknown Multiple Products

A remote unauthenticated attacker may use default certificates to generate JWT Tokens and gain full access to the tool and all connected devices.

2025-07-07
CVE-2025-41669
Analyzed
8.8
Phoenix Contact PLCnext

The Web-based Management allows a remote low privileged Engineer user to install additional APPs on the device downloaded from the PLCnext Store witho...

2026-05-27
CVE-2025-41668
8.8
Unknown Multiple Products

A low privileged remote attacker with file access can replace a critical file or folder used by the service security-profile to get read, write and ex...

2025-07-08
CVE-2025-41667
8.8
Unknown Multiple Products

A low privileged remote attacker with file access can replace a critical file used by the arp-preinit script to get read, write and execute access to...

2025-07-08
CVE-2025-41666
8.8
Unknown Multiple Products

A low privileged remote attacker with file access can replace a critical file used by the watchdog to get read, write and execute access to any file o...

2025-07-08
CVE-2025-41664
Analyzed
7.5
Unknown Multiple Products

A low-privileged remote attacker could gain unauthorized access to critical resources, such as firmware and certificates, due to improper permission h...

2025-09-08