search menu icon-carat-right cmu-wordmark

CERT Coordination Center

CERT/CC Vulnerability Notes Database


Published Public Updated ID CVSS Title
2025-06-10 2025-06-10 2025-06-16 VU#806555 A Vulnerability in UEFI Applications allows for secure boot bypass via misused NVRAM variable
2009-11-30 2009-11-30 2025-06-16 VU#261869 4.6 Clientless SSL VPN products break web browser domain-based security models
2023-02-28 2023-02-28 2025-07-08 VU#782720 TCG TPM2.0 implementations vulnerable to memory corruption
2025-07-11 2025-07-11 2025-07-15 VU#746790 SMM callout vulnerabilities identified in Gigabyte UEFI firmware modules
2025-01-17 2025-01-17 2025-07-16 VU#199397 Insecure Implementation of Tunneling Protocols (GRE/IPIP/4in6/6in4)
2025-05-09 2025-05-09 2025-07-17 VU#760160 libexpat library is vulnerable to DoS attacks through stack overflow
2025-06-10 2025-06-10 2025-07-22 VU#282450 Out-of-Bounds read vulnerability in TCG TPM2.0 reference implementation
2025-07-08 2025-07-08 2025-07-24 VU#613753 RUCKUS Virtual SmartZone (vSZ) and RUCKUS Network Director (RND) contain multiple vulnerabilities
2025-07-27 2025-07-27 2025-07-29 VU#335798 SysTrack LsiAgent.exe contains an improper DLL search order, allowing an attacker to execute arbitrary code and priv esc
2013-06-26 2013-06-24 2025-08-01 VU#662676 6.8 Digital Alert Systems DASDEC and Monroe Electronics R189 One-Net firmware exposes private root SSH key
2025-08-02 2025-08-02 2025-08-04 VU#317469 Partner Software/Partner Web does not sanitize Report files and Note content, allowing for XSS and RCE
2025-07-29 2025-07-29 2025-08-04 VU#554637 TP-Link Archer C50 router is vulnerable to configuration-file decryption
2025-08-15 2025-08-15 2025-08-15 VU#209095 SMM Memory Corruption Vulnerability in the AMI Aptio's SMM Module Across Multiple Devices
2025-08-19 2025-08-19 2025-08-19 VU#706118 Workhorse Software Services, Inc. software prior to version 1.9.4.48019, default deployment is vulnerable to multiple issues.
2025-01-14 2025-01-14 2025-08-25 VU#952657 Rsync contains six vulnerabilities

Sponsored by CISA.