CWE-489 · 85 kayıt
Active Debug Code
Bu sınıftaki CVE’ler
87 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
55Planlayın | CVE-2023-32645İstismar yok | A leftover debug code vulnerability exists in the httpd debug credentials functionality of Yifan YF325 v1.0_20221108.yifanwireless · yf325 firmware · CWE-489 | Kritik9,8 | — | %53,8 | 11 Eki 2023 |
45Planlayın | CVE-2017-5259Silahlaştırılmış | In versions 4.3.2-R4 and prior of Cambium Networks cnPilot firmware, an undocumented, root-privilege administration web shell is available ucambiumnetworks · cnpilot r190v firmware · CWE-489 | Yüksek8,8 | — | %32,4 | 20 Ara 2017 |
40Planlayın | CVE-2024-9643Kavram kanıtı | Four-Faith F3x36 Hidden Debug Credentialsfour-faith · f3x36 firmware · CWE-489 | Kritik9,8 | — | %3,0 | 4 Şub 2025 |
40Planlayın | CVE-2022-32585İstismar yok | A command execution vulnerability exists in the clish art2 functionality of Robustel R1510 3.3.0.robustel · r1510 firmware · CWE-489 | Kritik9,8 | — | %3,0 | 30 Haz 2022 |
40Planlayın | CVE-2022-29520İstismar yok | An OS command injection vulnerability exists in the console_main_loop :sys functionality of Abode Systems, Inc.goabode · iota all-in-one security kit firmware · CWE-489 | Kritik9,8 | — | %2,9 | 25 Eki 2022 |
39İzleyin | CVE-2024-21785İstismar yok | A leftover debug code vulnerability exists in the Telnet Diagnostic Interface functionality of AutomationDirect P3-550E 1.2.10.9.automationdirect · p3-550e firmware · CWE-489 | Kritik9,8 | — | %1,5 | 28 May 2024 |
39İzleyin | CVE-2023-34346İstismar yok | A stack-based buffer overflow vulnerability exists in the httpd gwcfg.cgi get functionality of Yifan YF325 v1.0_20221108.yifanwireless · yf325 firmware · CWE-489 | Kritik9,8 | — | %1,3 | 11 Eki 2023 |
39İzleyin | CVE-2023-22357İstismar yok | Active debug code exists in OMRON CP1L-EL20DR-D all versions, which may lead to a command that is not specified in FINS protocol being execuomron · cp1l-el20dr-d firmware · CWE-489 | Kritik9,8 | — | %1,2 | 17 Oca 2023 |
39İzleyin | CVE-2019-10939İstismar yok | A vulnerability has been identified in TIM 3V-IE (incl.siemens · tim 3v-ie firmware · CWE-489 | Kritik9,8 | — | %1,1 | 14 Nis 2020 |
39İzleyin | CVE-2023-4804İstismar yok | An unauthorized user could access debug features in Quantum HD Unity products that were accidentally exposed.johnsoncontrols · quantum hd unity compressor firmware · CWE-489 | Kritik9,8 | — | %0,8 | 10 Kas 2023 |
39İzleyin | CVE-2024-46873İstismar yok | Multiple SHARP routers leave the hidden debug function enabled.sharp corporation · home 5g hr02 · CWE-489 | Kritik9,8 | — | %0,7 | 22 Ara 2024 |
39İzleyin | CVE-2023-0954İstismar yok | Debug feature in Sensormatic Electronics Illustra Dome and PTZ camerasjohnsoncontrols · illustra pro gen 4 dome firmware · CWE-489 | Kritik9,8 | — | %0,7 | 8 Haz 2023 |
39İzleyin | CVE-2024-28008İstismar yok | Active Debug Code in NEC Corporation Aterm WG1800HP4, WG1200HS3, WG1900HP2, WG1200HP3, WG1800HP3, WG1200HS2, WG1900HP, WG1200HP2, W1200EX(-Mnec · aterm wg1800hp4 firmware · CWE-489 | Kritik9,8 | — | %0,6 | 27 Mar 2024 |
39İzleyin | CVE-2025-46674İstismar yok | NASA CryptoLib before 1.3.2 uses Extended Procedures that are a Work in Progress (not intended for use during flight), potentially leading tnasa · cryptolib · CWE-489 | Kritik9,9 | — | %0,6 | 26 Nis 2025 |
39İzleyin | CVE-2024-32047İstismar yok | CyberPower PowerPanel business Active Debug Codecyberpower · powerpanel · CWE-489 | Kritik9,8 | — | %0,5 | 15 May 2024 |
37İzleyin | CVE-2026-40035İstismar yok | Unfurl - Werkzeug Debugger Exposure via String Config Parsingryandfir · unfurl · CWE-489 | Kritik9,3 | — | %0,7 | 8 Nis 2026 |
36İzleyin | CVE-2022-20649İstismar yok | Cisco Redundancy Configuration Manager Debug Remote Code Execution Vulnerabilitycisco · cisco redundancy configuration manager · CWE-489 | Yüksek8,1 | — | %12,0 | 15 Kas 2024 |
36İzleyin | CVE-2022-38715İstismar yok | A leftover debug code vulnerability exists in the httpd shell.cgi functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020.siretta · quartz-gold firmware · CWE-489 | Yüksek8,8 | — | %3,7 | 26 Oca 2023 |
36İzleyin | CVE-2020-5763İstismar yok | Grandstream HT800 series firmware version 1.0.17.5 and below contain a backdoor in the SSH service.grandstream · ht801 firmware · CWE-489 | Yüksek8,8 | — | %2,7 | 29 Tem 2020 |
36İzleyin | CVE-2022-25995İstismar yok | A command execution vulnerability exists in the console inhand functionality of InHand Networks InRouter302 V3.5.4.inhandnetworks · ir302 firmware · CWE-489 | Yüksek8,8 | — | %2,7 | 12 May 2022 |
36İzleyin | CVE-2020-5756İstismar yok | Grandstream GWN7000 firmware version 1.0.9.4 and below allows authenticated remote users to modify the system's crontab via undocumented APIgrandstream · gwn7000 firmware · CWE-489 | Yüksek8,8 | — | %2,5 | 17 Tem 2020 |
36İzleyin | CVE-2026-77545İstismar yok | A malicious actor with access to the network, low privileges and under certain conditions could exploit an Active Debug Code vulnerability fubiquiti inc · unifi os server · CWE-489 | Kritik9,0 | — | %0,4 | 26 Ağu 2026 |
35İzleyin | CVE-2021-33591İstismar yok | An exposed remote debugging port in Naver Comic Viewer prior to 1.0.15.0 allowed a remote attacker to execute arbitrary code via a crafted Hnaver · comic viewer · CWE-489 | Yüksek8,8 | — | %1,6 | 28 May 2021 |
35İzleyin | CVE-2022-28689İstismar yok | A leftover debug code vulnerability exists in the console support functionality of InHand Networks InRouter302 V3.5.45.inhandnetworks · ir302 firmware · CWE-489 | Yüksek8,8 | — | %1,0 | 9 Kas 2022 |
35İzleyin | CVE-2022-30543İstismar yok | A leftover debug code vulnerability exists in the console infct functionality of InHand Networks InRouter302 V3.5.45.inhandnetworks · ir302 firmware · CWE-489 | Yüksek8,8 | — | %0,9 | 9 Kas 2022 |
- CVE-2023-3264555Planlayın
A leftover debug code vulnerability exists in the httpd debug credentials functionality of Yifan YF325 v1.0_20221108.
KritikCVSS 9,8İstismar yokEPSS %54yifanwireless · yf325 firmware11 Eki 2023
- CVE-2017-525945Planlayın
In versions 4.3.2-R4 and prior of Cambium Networks cnPilot firmware, an undocumented, root-privilege administration web shell is available u
YüksekCVSS 8,8SilahlaştırılmışEPSS %32cambiumnetworks · cnpilot r190v firmware20 Ara 2017
- CVE-2024-964340Planlayın
Four-Faith F3x36 Hidden Debug Credentials
KritikCVSS 9,8Kavram kanıtıEPSS %3four-faith · f3x36 firmware4 Şub 2025
- CVE-2022-3258540Planlayın
A command execution vulnerability exists in the clish art2 functionality of Robustel R1510 3.3.0.
KritikCVSS 9,8İstismar yokEPSS %3robustel · r1510 firmware30 Haz 2022
- CVE-2022-2952040Planlayın
An OS command injection vulnerability exists in the console_main_loop :sys functionality of Abode Systems, Inc.
KritikCVSS 9,8İstismar yokEPSS %3goabode · iota all-in-one security kit firmware25 Eki 2022
- CVE-2024-2178539İzleyin
A leftover debug code vulnerability exists in the Telnet Diagnostic Interface functionality of AutomationDirect P3-550E 1.2.10.9.
KritikCVSS 9,8İstismar yokEPSS %2automationdirect · p3-550e firmware28 May 2024
- CVE-2023-3434639İzleyin
A stack-based buffer overflow vulnerability exists in the httpd gwcfg.cgi get functionality of Yifan YF325 v1.0_20221108.
KritikCVSS 9,8İstismar yokEPSS %1yifanwireless · yf325 firmware11 Eki 2023
- CVE-2023-2235739İzleyin
Active debug code exists in OMRON CP1L-EL20DR-D all versions, which may lead to a command that is not specified in FINS protocol being execu
KritikCVSS 9,8İstismar yokEPSS %1omron · cp1l-el20dr-d firmware17 Oca 2023
- CVE-2019-1093939İzleyin
A vulnerability has been identified in TIM 3V-IE (incl.
KritikCVSS 9,8İstismar yokEPSS %1siemens · tim 3v-ie firmware14 Nis 2020
- CVE-2023-480439İzleyin
An unauthorized user could access debug features in Quantum HD Unity products that were accidentally exposed.
KritikCVSS 9,8İstismar yokEPSS %1johnsoncontrols · quantum hd unity compressor firmware10 Kas 2023
- CVE-2024-4687339İzleyin
Multiple SHARP routers leave the hidden debug function enabled.
KritikCVSS 9,8İstismar yokEPSS %1sharp corporation · home 5g hr0222 Ara 2024
- CVE-2023-095439İzleyin
Debug feature in Sensormatic Electronics Illustra Dome and PTZ cameras
KritikCVSS 9,8İstismar yokEPSS %1johnsoncontrols · illustra pro gen 4 dome firmware8 Haz 2023
- CVE-2024-2800839İzleyin
Active Debug Code in NEC Corporation Aterm WG1800HP4, WG1200HS3, WG1900HP2, WG1200HP3, WG1800HP3, WG1200HS2, WG1900HP, WG1200HP2, W1200EX(-M
KritikCVSS 9,8İstismar yokEPSS %1nec · aterm wg1800hp4 firmware27 Mar 2024
- CVE-2025-4667439İzleyin
NASA CryptoLib before 1.3.2 uses Extended Procedures that are a Work in Progress (not intended for use during flight), potentially leading t
KritikCVSS 9,9İstismar yokEPSS %1nasa · cryptolib26 Nis 2025
- CVE-2024-3204739İzleyin
CyberPower PowerPanel business Active Debug Code
KritikCVSS 9,8İstismar yokEPSS %1cyberpower · powerpanel15 May 2024
- CVE-2026-4003537İzleyin
Unfurl - Werkzeug Debugger Exposure via String Config Parsing
KritikCVSS 9,3İstismar yokEPSS %1ryandfir · unfurl8 Nis 2026
- CVE-2022-2064936İzleyin
Cisco Redundancy Configuration Manager Debug Remote Code Execution Vulnerability
YüksekCVSS 8,1İstismar yokEPSS %12cisco · cisco redundancy configuration manager15 Kas 2024
- CVE-2022-3871536İzleyin
A leftover debug code vulnerability exists in the httpd shell.cgi functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020.
YüksekCVSS 8,8İstismar yokEPSS %4siretta · quartz-gold firmware26 Oca 2023
- CVE-2020-576336İzleyin
Grandstream HT800 series firmware version 1.0.17.5 and below contain a backdoor in the SSH service.
YüksekCVSS 8,8İstismar yokEPSS %3grandstream · ht801 firmware29 Tem 2020
- CVE-2022-2599536İzleyin
A command execution vulnerability exists in the console inhand functionality of InHand Networks InRouter302 V3.5.4.
YüksekCVSS 8,8İstismar yokEPSS %3inhandnetworks · ir302 firmware12 May 2022
- CVE-2020-575636İzleyin
Grandstream GWN7000 firmware version 1.0.9.4 and below allows authenticated remote users to modify the system's crontab via undocumented API
YüksekCVSS 8,8İstismar yokEPSS %2grandstream · gwn7000 firmware17 Tem 2020
- CVE-2026-7754536İzleyin
A malicious actor with access to the network, low privileges and under certain conditions could exploit an Active Debug Code vulnerability f
KritikCVSS 9,0İstismar yokEPSS %0ubiquiti inc · unifi os server26 Ağu 2026
- CVE-2021-3359135İzleyin
An exposed remote debugging port in Naver Comic Viewer prior to 1.0.15.0 allowed a remote attacker to execute arbitrary code via a crafted H
YüksekCVSS 8,8İstismar yokEPSS %2naver · comic viewer28 May 2021
- CVE-2022-2868935İzleyin
A leftover debug code vulnerability exists in the console support functionality of InHand Networks InRouter302 V3.5.45.
YüksekCVSS 8,8İstismar yokEPSS %1inhandnetworks · ir302 firmware9 Kas 2022
- CVE-2022-3054335İzleyin
A leftover debug code vulnerability exists in the console infct functionality of InHand Networks InRouter302 V3.5.45.
YüksekCVSS 8,8İstismar yokEPSS %1inhandnetworks · ir302 firmware9 Kas 2022