CWE-489

Active Debug Code

Parent: CWE-710 - Improper Adherence to Coding Standards

The product is released with debugging code still enabled or active.

86 vulnerabilities with CWE-489
CVE-2021-1381 MEDIUM
Cisco IOS XE - Privilege Escalation
CVSS 6.1
CVE-2021-1398 MEDIUM
Cisco IOS XE - Unauthenticated Arbitrary Code Execution via Boot Script Argument Tampering
CVSS 6.8
CVE-2021-1391 MEDIUM
Cisco IOS XE - Privilege Escalation
CVSS 5.1
CVE-2020-25156 HIGH
B. Braun Melsungen AG - Privilege Escalation
CVSS 7.2
CVE-2020-5763 HIGH
Grandstream HT800 Series Firmware < 1.0.17.5 - Authenticated Backdoor Root Shell via SSH Challenge
CVSS 8.8
CVE-2020-5756 HIGH
Grandstream GWN7000 <1.0.9.4 - Command Injection
CVSS 8.8
CVE-2020-8320 MEDIUM
Lenovo ThinkPad - Privilege Escalation via Internal Shell
CVSS 6.4
CVE-2020-8477 HIGH
ABB System 800xA Information Manager - XSS
CVSS 8.8
CVE-2019-10939 CRITICAL
Siemens TIM 3V-IE/4R-IE Firmware - Active Debug Code via Open Debug Port
CVSS 9.8
CVE-2018-5454 HIGH
Philips IntelliSpace Portal 7.0.x and 8.0.x - Remote Code Execution via Active Debug Code
CVSS 8.1
CVE-2017-5259 HIGH
Cambium Networks cnPilot <4.3.2-R4 - Privilege Escalation
CVSS 8.8
Details
Vulnerabilities 86