CVE Database

14+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS

14 results for "CWE-20"

CVE-2025-6625
7.5 HIGH

CWE-20: Improper Input Validation vulnerability exists that could cause a Denial Of Service when specific crafted FTP command is sent to the device.

Aug 18, 2025
CVE-2025-46390
7.5 HIGH

CWE-204: Observable Response Discrepancy

Aug 6, 2025
CVE-2025-23174
7.5 HIGH

CWE-200: Exposure of Sensitive Information to an Unauthorized Actor

Apr 21, 2025
CVE-2025-2223
7.8 HIGH

CWE-20: Improper Input Validation vulnerability exists that could cause a loss of Confidentiality, Integrity and Availability of engineering workstation when a malicious project file is …

Apr 9, 2025
CVE-2024-12142
8.6 HIGH

CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists that could cause information disclosure of restricted web page, modification of web page and …

Jan 17, 2025
CVE-2024-47922
7.5 HIGH

Priority – CWE-200: Exposure of Sensitive Information to an Unauthorized Actor

Dec 30, 2024
CVE-2024-47915
7.5 HIGH

VaeMendis - CWE-200: Exposure of Sensitive Information to an Unauthorized Actor

Nov 14, 2024
CVE-2024-45245
7.8 HIGH

Diebold Nixdorf – CWE-200: Exposure of Sensitive Information to an Unauthorized Actor

Oct 6, 2024
CVE-2024-41700
7.5 HIGH

Barix – CWE-200 Exposure of Sensitive Information to an Unauthorized Actor

Aug 20, 2024
CVE-2024-41696
7.5 HIGH

Priority PRI WEB Portal Add-On for Priority ERP on prem - CWE-200: Exposure of Sensitive Information to an Unauthorized Actor

Jul 30, 2024
CVE-2024-5681
7.8 HIGH

CWE-20: Improper Input Validation vulnerability exists that could cause local denial-of-service, privilege escalation, and potentially kernel execution when a malicious actor with local user access …

Jul 11, 2024
CVE-2024-27784
8.8 HIGH

Multiple Exposure of sensitive information to an unauthorized actor weaknesses [CWE-200] vulnerability in Fortinet FortiAIOps 2.0.0 may allow an authenticated, remote attacker to retrieve sensitive …

Jul 9, 2024
CVE-2024-36390
7.5 HIGH

MileSight DeviceHub - CWE-20 Improper Input Validation may allow Denial of Service

Jun 2, 2024
CVE-2024-27769
8.8 HIGH

Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-200: Exposure of Sensitive Information to an Unauthorized Actor may allow Taking Ownership Over Devices

Mar 18, 2024

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.