CWE-912 · 91 records
Hidden Functionality
CVEs in this class
91 records
| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
98Now | CVE-2024-20439Weaponized | A vulnerability in Cisco Smart Licensing Utility (CSLU) could allow an unauthenticated, remote attacker to log into an affected system by uscisco · smart license utility · CWE-912 | Critical9.8 | KEV | 97.1% | Sep 4, 2024 |
56Plan | CVE-2021-25371Weaponized | A vulnerability in DSP driver prior to SMR Mar-2021 Release 1 allows attackers load arbitrary ELF libraries inside DSP.samsung · android · CWE-912 | Medium6.7 | KEV | 0.8% | Mar 26, 2021 |
49Plan | CVE-2025-47729Weaponized | The TeleMessage archiving backend through 2025-05-05 holds cleartext copies of messages from TM SGNL (aka Archive Signal) app users, which itelemessage · text message archiver · CWE-912 | Medium4.9 | KEV | 0.4% | May 8, 2025 |
44Plan | CVE-2021-24867No exploit | Backdoored Plugins & Themes from AccessPress Themesaccesspressthemes · accessbuddy · CWE-912 | Critical9.8 | — | 18.0% | Feb 21, 2022 |
41Plan | CVE-2020-16204No exploit | The affected product is vulnerable due to an undocumented interface found on the device, which may allow an attacker to execute commands as redlion · n-tron 702-w firmware · CWE-912 | Critical9.8 | — | 5.5% | Sep 1, 2020 |
40Plan | CVE-2020-12504No exploit | Pepperl+Fuchs improper authorization affects multiple Comtrol RocketLinx productspepperl-fuchs · es7510-xt firmware · CWE-912 | Critical9.8 | — | 3.0% | Oct 15, 2020 |
40Plan | CVE-2020-14487No exploit | OpenClinic GA 5.09.02 contains a hidden default user account that may be accessed if an administrator has not expressly turned off this accofreemedsoftware · openclinic ga · CWE-912 | Critical9.8 | — | 2.2% | Jul 29, 2020 |
40Plan | CVE-2026-14812No exploit | Premium SEO - Unauthenticated Backdoor (Admin Creation / RCE / SSRF / Content Injection)unknown · premium seo · CWE-912 | Critical10.0 | — | 0.8% | Aug 6, 2026 |
40Plan | CVE-2026-3587No exploit | Hidden CLI Function Allows Root Accesswago · lean managed switch 852-1812 · CWE-912 | Critical10.0 | — | 0.7% | Mar 23, 2026 |
40Plan | CVE-2026-11976No exploit | MonsterInsights Pro 10.2.0/10.2.2 - Backdoored via AWS S3 bucket compromiseunknown · monsterinsights pro · CWE-912 | Critical10.0 | — | 0.5% | Aug 6, 2026 |
40Plan | CVE-2026-15413No exploit | Link Factory - Backdoorunknown · link factory · CWE-912 | Critical10.0 | — | 0.5% | Aug 13, 2026 |
39Monitor | CVE-2010-20103Weaponized | ProFTPD 1.3.3c Backdoor Command Executionproftpd · proftpd · CWE-912 | Critical9.3 | — | 5.1% | Aug 20, 2025 |
39Monitor | CVE-2025-32370Proof of concept | Kentico Xperience before 13.0.178 has a specific set of allowed ContentUploader file extensions for unauthenticated uploads; however, becauskentico · xperience · CWE-912 | Critical9.8 | — | 1.5% | Apr 6, 2025 |
39Monitor | CVE-2023-24108No exploit | MvcTools 6d48cd6830fc1df1d8c9d61caa1805fd6a1b7737 was discovered to contain a code execution backdoor via the request package (requirements.zetacomponents · mvctools · CWE-912 | Critical9.8 | — | 1.4% | Feb 22, 2023 |
39Monitor | CVE-2022-46996No exploit | vSphere_selfuse commit 2a9fe074a64f6a0dd8ac02f21e2f10d66cac5749 was discovered to contain a code execution backdoor via the request package.vsphere selfuse project · vsphere selfuse · CWE-912 | Critical9.8 | — | 1.3% | Dec 14, 2022 |
39Monitor | CVE-2024-39754No exploit | A static login vulnerability exists in the wctrls functionality of Wavlink AC3000 M33A8.V5030.210505.wavlink · wl-wn533a8 firmware · CWE-912 | Critical9.8 | — | 1.3% | Jan 14, 2025 |
39Monitor | CVE-2022-47767No exploit | A backdoor in Solar-Log Gateway products allows remote access via web panel gaining super administration privileges to the attacker.solar-log · solar-log 250 firmware · CWE-912 | Critical9.8 | — | 1.2% | Jan 26, 2023 |
39Monitor | CVE-2022-46997No exploit | Passhunt commit 54eb987d30ead2b8ebbf1f0b880aa14249323867 was discovered to contain a code execution backdoor via the request package.passhunt project · passhunt · CWE-912 | Critical9.8 | — | 1.2% | Dec 14, 2022 |
39Monitor | CVE-2021-43987No exploit | An additional, nondocumented administrative account exists in mySCADA myPRO Versions 8.20.0 and prior that is not exposed through the web inmyscada · mypro · CWE-912 | Critical9.8 | — | 1.2% | Dec 23, 2021 |
39Monitor | CVE-2024-45697No exploit | D-Link WiFi router - Hidden Functionalitydlink · dir-x4860 firmware · CWE-912 | Critical9.8 | — | 1.0% | Sep 16, 2024 |
39Monitor | CVE-2022-3203No exploit | ORing net IAP-420(+) Hidden Functionalityoringnet · iap-420\+ firmware · CWE-912 | Critical9.8 | — | 0.9% | Oct 21, 2022 |
39Monitor | CVE-2026-11405Proof of concept | Hidden backdoor authentication mechanism in multiple versions of Tenda firmware allows admin access to web management interfacetenda · firmware · CWE-912 | Critical9.8 | — | 0.8% | Jul 6, 2026 |
39Monitor | CVE-2026-7413No exploit | Persistent undocumented backdoor access in Yarbo robotyarbo · lawn mower firmware · CWE-912 | Critical9.8 | — | 0.7% | May 7, 2026 |
39Monitor | CVE-2024-28011No exploit | Hidden Functionality vulnerability in NEC Corporation Aterm WG1800HP4, WG1200HS3, WG1900HP2, WG1200HP3, WG1800HP3, WG1200HS2, WG1900HP, WG12nec · aterm wg1800hp4 firmware · CWE-912 | Critical9.8 | — | 0.6% | Mar 27, 2024 |
39Monitor | CVE-2026-17032No exploit | Supsystic Multiple Pro Plugins - Backdoor via Compromised Vendor Update Serverunknown · google-maps-easy-pro · CWE-912 | Critical9.8 | — | 0.5% | Aug 6, 2026 |
- CVE-2024-2043998Now
A vulnerability in Cisco Smart Licensing Utility (CSLU) could allow an unauthenticated, remote attacker to log into an affected system by us
CriticalCVSS 9.8KEVWeaponizedEPSS 97%cisco · smart license utilitySep 4, 2024
- CVE-2021-2537156Plan
A vulnerability in DSP driver prior to SMR Mar-2021 Release 1 allows attackers load arbitrary ELF libraries inside DSP.
MediumCVSS 6.7KEVWeaponizedEPSS 1%samsung · androidMar 26, 2021
- CVE-2025-4772949Plan
The TeleMessage archiving backend through 2025-05-05 holds cleartext copies of messages from TM SGNL (aka Archive Signal) app users, which i
MediumCVSS 4.9KEVWeaponizedEPSS 0%telemessage · text message archiverMay 8, 2025
- CVE-2021-2486744Plan
Backdoored Plugins & Themes from AccessPress Themes
CriticalCVSS 9.8No exploitEPSS 18%accesspressthemes · accessbuddyFeb 21, 2022
- CVE-2020-1620441Plan
The affected product is vulnerable due to an undocumented interface found on the device, which may allow an attacker to execute commands as
CriticalCVSS 9.8No exploitEPSS 5%redlion · n-tron 702-w firmwareSep 1, 2020
- CVE-2020-1250440Plan
Pepperl+Fuchs improper authorization affects multiple Comtrol RocketLinx products
CriticalCVSS 9.8No exploitEPSS 3%pepperl-fuchs · es7510-xt firmwareOct 15, 2020
- CVE-2020-1448740Plan
OpenClinic GA 5.09.02 contains a hidden default user account that may be accessed if an administrator has not expressly turned off this acco
CriticalCVSS 9.8No exploitEPSS 2%freemedsoftware · openclinic gaJul 29, 2020
- CVE-2026-1481240Plan
Premium SEO - Unauthenticated Backdoor (Admin Creation / RCE / SSRF / Content Injection)
CriticalCVSS 10.0No exploitEPSS 1%unknown · premium seoAug 6, 2026
- CVE-2026-358740Plan
Hidden CLI Function Allows Root Access
CriticalCVSS 10.0No exploitEPSS 1%wago · lean managed switch 852-1812Mar 23, 2026
- CVE-2026-1197640Plan
MonsterInsights Pro 10.2.0/10.2.2 - Backdoored via AWS S3 bucket compromise
CriticalCVSS 10.0No exploitEPSS 1%unknown · monsterinsights proAug 6, 2026
- CVE-2026-1541340Plan
Link Factory - Backdoor
CriticalCVSS 10.0No exploitEPSS 1%unknown · link factoryAug 13, 2026
- CVE-2010-2010339Monitor
ProFTPD 1.3.3c Backdoor Command Execution
CriticalCVSS 9.3WeaponizedEPSS 5%proftpd · proftpdAug 20, 2025
- CVE-2025-3237039Monitor
Kentico Xperience before 13.0.178 has a specific set of allowed ContentUploader file extensions for unauthenticated uploads; however, becaus
CriticalCVSS 9.8Proof of conceptEPSS 2%kentico · xperienceApr 6, 2025
- CVE-2023-2410839Monitor
MvcTools 6d48cd6830fc1df1d8c9d61caa1805fd6a1b7737 was discovered to contain a code execution backdoor via the request package (requirements.
CriticalCVSS 9.8No exploitEPSS 1%zetacomponents · mvctoolsFeb 22, 2023
- CVE-2022-4699639Monitor
vSphere_selfuse commit 2a9fe074a64f6a0dd8ac02f21e2f10d66cac5749 was discovered to contain a code execution backdoor via the request package.
CriticalCVSS 9.8No exploitEPSS 1%vsphere selfuse project · vsphere selfuseDec 14, 2022
- CVE-2024-3975439Monitor
A static login vulnerability exists in the wctrls functionality of Wavlink AC3000 M33A8.V5030.210505.
CriticalCVSS 9.8No exploitEPSS 1%wavlink · wl-wn533a8 firmwareJan 14, 2025
- CVE-2022-4776739Monitor
A backdoor in Solar-Log Gateway products allows remote access via web panel gaining super administration privileges to the attacker.
CriticalCVSS 9.8No exploitEPSS 1%solar-log · solar-log 250 firmwareJan 26, 2023
- CVE-2022-4699739Monitor
Passhunt commit 54eb987d30ead2b8ebbf1f0b880aa14249323867 was discovered to contain a code execution backdoor via the request package.
CriticalCVSS 9.8No exploitEPSS 1%passhunt project · passhuntDec 14, 2022
- CVE-2021-4398739Monitor
An additional, nondocumented administrative account exists in mySCADA myPRO Versions 8.20.0 and prior that is not exposed through the web in
CriticalCVSS 9.8No exploitEPSS 1%myscada · myproDec 23, 2021
- CVE-2024-4569739Monitor
D-Link WiFi router - Hidden Functionality
CriticalCVSS 9.8No exploitEPSS 1%dlink · dir-x4860 firmwareSep 16, 2024
- CVE-2022-320339Monitor
ORing net IAP-420(+) Hidden Functionality
CriticalCVSS 9.8No exploitEPSS 1%oringnet · iap-420\+ firmwareOct 21, 2022
- CVE-2026-1140539Monitor
Hidden backdoor authentication mechanism in multiple versions of Tenda firmware allows admin access to web management interface
CriticalCVSS 9.8Proof of conceptEPSS 1%tenda · firmwareJul 6, 2026
- CVE-2026-741339Monitor
Persistent undocumented backdoor access in Yarbo robot
CriticalCVSS 9.8No exploitEPSS 1%yarbo · lawn mower firmwareMay 7, 2026
- CVE-2024-2801139Monitor
Hidden Functionality vulnerability in NEC Corporation Aterm WG1800HP4, WG1200HS3, WG1900HP2, WG1200HP3, WG1800HP3, WG1200HS2, WG1900HP, WG12
CriticalCVSS 9.8No exploitEPSS 1%nec · aterm wg1800hp4 firmwareMar 27, 2024
- CVE-2026-1703239Monitor
Supsystic Multiple Pro Plugins - Backdoor via Compromised Vendor Update Server
CriticalCVSS 9.8No exploitEPSS 1%unknown · google-maps-easy-proAug 6, 2026