CWE-477 · 16 записей
Use of Obsolete Function
CVE этого класса
16 записей
| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
43В плане | CVE-2025-49212Эксплойта нет | An insecure deserialization operation in the Trend Micro Endpoint Encryption PolicyServer could lead to a pre-authentication remote code exetrendmicro · trend micro endpoint encryption · CWE-477 | Критическая9,8 | — | 13,3 % | 17 июн. 2025 г. |
43В плане | CVE-2025-49213Эксплойта нет | An insecure deserialization operation in the Trend Micro Endpoint Encryption PolicyServer could lead to a pre-authentication remote code exetrendmicro · trend micro endpoint encryption · CWE-477 | Критическая9,8 | — | 13,3 % | 17 июн. 2025 г. |
40В плане | CVE-2018-17890Эксплойта нет | NUUO CMS all versions 3.1 and prior, The application uses insecure and outdated software components for functionality, which could allow arbnuuo · nuuo cms · CWE-477 | Критическая9,8 | — | 3,3 % | 12 окт. 2018 г. |
40В плане | CVE-2025-49220Эксплойта нет | An insecure deserialization operation in Trend Micro Apex Central below version 8.0.7007 could lead to a pre-authentication remote code exectrendmicro · apex central · CWE-477 | Критическая9,8 | — | 2,1 % | 17 июн. 2025 г. |
39Наблюдать | CVE-2025-49219Эксплойта нет | An insecure deserialization operation in Trend Micro Apex Central below versions 8.0.7007 could lead to a pre-authentication remote code exetrendmicro · apex central · CWE-477 | Критическая9,8 | — | 1,4 % | 17 июн. 2025 г. |
39Наблюдать | CVE-2025-49217Эксплойта нет | An insecure deserialization operation in the Trend Micro Endpoint Encryption PolicyServer could lead to a pre-authentication remote code exetrendmicro · trend micro endpoint encryption · CWE-477 | Критическая9,8 | — | 1,1 % | 17 июн. 2025 г. |
39Наблюдать | CVE-2023-23451Эксплойта нет | The Flexi Classic and Flexi Soft Gateways SICK UE410-EN3 FLEXI ETHERNET GATEW.sick · ue410-en3 firmware · CWE-477 | Критическая9,8 | — | 0,6 % | 19 апр. 2023 г. |
39Наблюдать | CVE-2025-49216Эксплойта нет | An authentication bypass vulnerability in the Trend Micro Endpoint Encryption PolicyServer could allow an attacker to access key methods as trendmicro · trend micro endpoint encryption · CWE-477 | Критическая9,8 | — | 0,5 % | 17 июн. 2025 г. |
36Наблюдать | CVE-2019-18251Эксплойта нет | In Omron CX-Supervisor, Versions 3.5 (12) and prior, Omron CX-Supervisor ships with Teamviewer Version 5.0.8703 QS.omron · cx-supervisor · CWE-477 | Высокая8,8 | — | 1,7 % | 25 нояб. 2019 г. |
35Наблюдать | CVE-2025-49214Эксплойта нет | An insecure deserialization operation in the Trend Micro Endpoint Encryption PolicyServer could lead to a post-authentication remote code extrendmicro · trend micro endpoint encryption · CWE-477 | Высокая8,8 | — | 0,8 % | 17 июн. 2025 г. |
35Наблюдать | CVE-2022-1384Эксплойта нет | Authorized users are allowed to install old plugin versions from the Marketplacemattermost · mattermost server · CWE-477 | Высокая8,8 | — | 0,7 % | 19 апр. 2022 г. |
35Наблюдать | CVE-2023-28829Эксплойта нет | A vulnerability has been identified in SIMATIC NET PC Software V14 (All versions), SIMATIC NET PC Software V15 (All versions), SIMATIC PCS 7siemens · simatic net pc software · CWE-477 | Высокая8,8 | — | 0,3 % | 13 июн. 2023 г. |
28Наблюдать | CVE-2020-6978Эксплойта нет | In Honeywell WIN-PAK 4.7.2, Web and prior versions, the affected product is vulnerable due to the usage of old jQuery libraries.honeywell · win-pak · CWE-477 | Высокая7,2 | — | 0,8 % | 24 мар. 2020 г. |
21Наблюдать | CVE-2026-1693Эксплойта нет | Use of vulnerable Resource Owner Password Credentials flowarcinfo · pcvue · CWE-477 | Средняя5,3 | — | 0,3 % | 26 февр. 2026 г. |
17Наблюдать | CVE-2019-10968Эксплойта нет | Philips Holter 2010 Plus, all versions.philips · zymed holter 2010 · CWE-477 | Средняя4,4 | — | 0,3 % | 24 июл. 2019 г. |
13Наблюдать | CVE-2019-10988Эксплойта нет | In Philips HDI 4000 Ultrasound Systems, all versions running on old, unsupported operating systems such as Windows 2000, the HDI 4000 Ultrasphilips · hdi 4000 firmware · CWE-477 | Низкая3,4 | — | 0,3 % | 4 сент. 2019 г. |
- CVE-2025-4921243В плане
An insecure deserialization operation in the Trend Micro Endpoint Encryption PolicyServer could lead to a pre-authentication remote code exe
КритическаяCVSS 9,8Эксплойта нетEPSS 13 %trendmicro · trend micro endpoint encryption17 июн. 2025 г.
- CVE-2025-4921343В плане
An insecure deserialization operation in the Trend Micro Endpoint Encryption PolicyServer could lead to a pre-authentication remote code exe
КритическаяCVSS 9,8Эксплойта нетEPSS 13 %trendmicro · trend micro endpoint encryption17 июн. 2025 г.
- CVE-2018-1789040В плане
NUUO CMS all versions 3.1 and prior, The application uses insecure and outdated software components for functionality, which could allow arb
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %nuuo · nuuo cms12 окт. 2018 г.
- CVE-2025-4922040В плане
An insecure deserialization operation in Trend Micro Apex Central below version 8.0.7007 could lead to a pre-authentication remote code exec
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %trendmicro · apex central17 июн. 2025 г.
- CVE-2025-4921939Наблюдать
An insecure deserialization operation in Trend Micro Apex Central below versions 8.0.7007 could lead to a pre-authentication remote code exe
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %trendmicro · apex central17 июн. 2025 г.
- CVE-2025-4921739Наблюдать
An insecure deserialization operation in the Trend Micro Endpoint Encryption PolicyServer could lead to a pre-authentication remote code exe
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %trendmicro · trend micro endpoint encryption17 июн. 2025 г.
- CVE-2023-2345139Наблюдать
The Flexi Classic and Flexi Soft Gateways SICK UE410-EN3 FLEXI ETHERNET GATEW.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %sick · ue410-en3 firmware19 апр. 2023 г.
- CVE-2025-4921639Наблюдать
An authentication bypass vulnerability in the Trend Micro Endpoint Encryption PolicyServer could allow an attacker to access key methods as
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %trendmicro · trend micro endpoint encryption17 июн. 2025 г.
- CVE-2019-1825136Наблюдать
In Omron CX-Supervisor, Versions 3.5 (12) and prior, Omron CX-Supervisor ships with Teamviewer Version 5.0.8703 QS.
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %omron · cx-supervisor25 нояб. 2019 г.
- CVE-2025-4921435Наблюдать
An insecure deserialization operation in the Trend Micro Endpoint Encryption PolicyServer could lead to a post-authentication remote code ex
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %trendmicro · trend micro endpoint encryption17 июн. 2025 г.
- CVE-2022-138435Наблюдать
Authorized users are allowed to install old plugin versions from the Marketplace
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %mattermost · mattermost server19 апр. 2022 г.
- CVE-2023-2882935Наблюдать
A vulnerability has been identified in SIMATIC NET PC Software V14 (All versions), SIMATIC NET PC Software V15 (All versions), SIMATIC PCS 7
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %siemens · simatic net pc software13 июн. 2023 г.
- CVE-2020-697828Наблюдать
In Honeywell WIN-PAK 4.7.2, Web and prior versions, the affected product is vulnerable due to the usage of old jQuery libraries.
ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %honeywell · win-pak24 мар. 2020 г.
- CVE-2026-169321Наблюдать
Use of vulnerable Resource Owner Password Credentials flow
СредняяCVSS 5,3Эксплойта нетEPSS 0 %arcinfo · pcvue26 февр. 2026 г.
- CVE-2019-1096817Наблюдать
Philips Holter 2010 Plus, all versions.
СредняяCVSS 4,4Эксплойта нетEPSS 0 %philips · zymed holter 201024 июл. 2019 г.
- CVE-2019-1098813Наблюдать
In Philips HDI 4000 Ultrasound Systems, all versions running on old, unsupported operating systems such as Windows 2000, the HDI 4000 Ultras
НизкаяCVSS 3,4Эксплойта нетEPSS 0 %philips · hdi 4000 firmware4 сент. 2019 г.