Skip to main content
← All Articles

Tag

#CWE-306

4 articles

Advertisement

VU
CRITICAL
Vulnerabilities

CVE-2025-65856: Authentication Bypass in Xiongmai XM530 IP Cameras

Critical authentication bypass (CVE-2025-65856) in Xiongmai XM530 IP Camera firmware allows unauthenticated remote access to video streams and sensitive data.

Runtime Rebel Intel
4 min read·Apr 23, 2026
VU
HIGH
Vulnerabilities

CVE-2026-4436: High-Severity Flaw in GPL Odorizers GPL750

High-severity vulnerability CVE-2026-4436 in GPL Odorizers GPL750 allows remote attackers to manipulate gas odorant levels. Learn how to patch affected systems.

Runtime Rebel Intel
3 min read·Apr 10, 2026
VU
CRITICAL
Vulnerabilities

CVE-2026-2417: Pharos Controls RCE via Missing Authentication

Critical vulnerability (CVE-2026-2417) in Pharos Controls Mosaic Show Controller firmware 2.15.3 allows unauthenticated root RCE. Upgrade to 2.16+ immediately.

Runtime Rebel Intel
4 min read·Mar 24, 2026
VU
CRITICAL
Vulnerabilities

CVE-2026-3611: Critical Auth Bypass in Honeywell IQ4x BMS Controllers

CISA warns of a critical authentication bypass (CVE-2026-3611) in Honeywell IQ4x BMS Controllers, allowing unauthenticated attackers administrative access and potential

Runtime Rebel Intel
5 min read·Mar 10, 2026