NVD Vulnerabilities

Severity Distribution

Publication Trend

Vulnerability Database

CVE ID Description Published Base Score Attack Vector Severity Actions
CVE-2026-27520 Binardat 10G08-0800GSM network switch firmware versions prior to V300SP10260209 store a user password in a client-side cookie as a Base64-encoded valu... 2026-02-24 7.5 NETWORK HIGH NVD
CVE-2026-27519 Binardat 10G08-0800GSM network switch firmware version V300SP10260209 and prior use RC4 with a hard-coded key embedded in client-side JavaScript. Beca... 2026-02-24 7.5 NETWORK HIGH NVD
CVE-2026-27518 Binardat 10G08-0800GSM network switch firmware version V300SP10260209 and prior lack CSRF protections for state-changing actions in the administrative... 2026-02-24 4.3 NETWORK MEDIUM NVD
CVE-2026-27517 Binardat 10G08-0800GSM network switch firmware version V300SP10260209 and prior reflect unsanitized user input in the web interface, allowing an attac... 2026-02-24 5.4 NETWORK MEDIUM NVD
CVE-2026-27516 Binardat 10G08-0800GSM network switch firmware version V300SP10260209 and prior expose user passwords in plaintext within the administrative interface... 2026-02-24 8.1 NETWORK HIGH NVD
CVE-2026-27515 Binardat 10G08-0800GSM network switch firmware versions prior to V300SP10260209 generate predictable numeric session identifiers in the web management... 2026-02-24 9.1 NETWORK CRITICAL NVD
CVE-2026-27507 Binardat 10G08-0800GSM network switch firmware version V300SP10260209 and prior contain hard-coded administrative credentials that cannot be changed b... 2026-02-24 9.8 NETWORK CRITICAL NVD
CVE-2026-23678 Binardat 10G08-0800GSM network switch firmware version V300SP10260209 and prior contain a command injection vulnerability in the traceroute diagnostic... 2026-02-24 8.8 NETWORK HIGH NVD
CVE-2025-69985 FUXA 1.2.8 and prior contains an Authentication Bypass vulnerability leading to Remote Code Execution (RCE). The vulnerability exists in the server/ap... 2026-02-24 9.8 NETWORK CRITICAL NVD
CVE-2025-63409 Privilege escalation and improper access control in GCOM EPON 1GE C00R371V00B01 allows remote authenticated users to modify administrator only setting... 2026-02-24 8.8 NETWORK HIGH NVD
CVE-2025-47904 Download of Code Without Integrity Check vulnerability in Microchip Time Provider 4100 allows Malicious Manual Software Update.This issue affects Time... 2026-02-24 5.7 LOCAL MEDIUM NVD
CVE-2026-3102 A vulnerability was determined in exiftool up to 13.49 on macOS. This issue affects the function SetMacOSTags of the file lib/Image/ExifTool/MacOS.pm ... 2026-02-24 6.3 NETWORK MEDIUM NVD
CVE-2026-3101 A vulnerability was found in Intelbras TIP 635G 1.12.3.5. This vulnerability affects unknown code of the component Ping Handler. The manipulation resu... 2026-02-24 6.3 NETWORK MEDIUM NVD
CVE-2026-27732 WWBN AVideo is an open source video platform. Prior to version 22.0, the `aVideoEncoder.json.php` API endpoint accepts a `downloadURL` parameter and f... 2026-02-24 8.1 NETWORK HIGH NVD
CVE-2026-27584 Actual is a local-first personal finance tool. Prior to version 26.2.1, missing authentication middleware in the ActualBudget server component allows ... 2026-02-24 7.5 NETWORK HIGH NVD