漏洞列表 352348
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2025-59103
Weak Default Passwords for SSH Access in dormakaba access manager
CRITICAL 9.2 2026-01-26
dormakaba Access Manager 92xx-k5
CVE NVD
CVE-2025-59102
Secrets Stored in Plaintext in Database in dormakaba access manager
MEDIUM 6.9 2026-01-26
dormakaba Access Manager 92xx-k5
CVE NVD
CVE-2025-59101
Insufficient Session Management in dormakaba access manager
HIGH 7.7 2026-01-26
dormakaba Access Manager 92xx-k5 dormakaba Access Manager 92xx-k7
CVE NVD
CVE-2025-59100
Unauthenticated Access to the SQLite Database in dormakaba access manager
MEDIUM 5.9 2026-01-26
dormakaba Access Manager 92xx-k5
CVE NVD
CVE-2025-59099
Unauthenticated Path Traversal in dormakaba access manager
HIGH 8.8 2026-01-26
dormakaba Access Manager 92xx-k5 dormakaba Access Manager 92xx-k7
CVE NVD
CVE-2025-59098
Trace Functionality Leaking Sensitive Data in dormakaba access manager
HIGH 8.7 2026-01-26
dormakaba Access Manager 92xx-k5 dormakaba Access Manager 92xx-k7
CVE NVD
CVE-2025-59097
Unauthenticated SOAP API in dormakaba access manager
CRITICAL 9.3 2026-01-26
dormakaba Access Manager 92xx-k5 dormakaba Access Manager 92xx-k7
CVE NVD
CVE-2025-59096
Weak Default Password in dormakaba Kaba exos 9300
MEDIUM 4.6 2026-01-26
dormakaba Kaba exos 9300
CVE NVD
CVE-2025-59095
Hard-coded Key for PIN Encryption in dormakaba Kaba exos 9300
MEDIUM 6.8 2026-01-26
dormakaba Kaba exos 9300
CVE NVD
CVE-2025-59094
Local Privilege Escalation in dormakaba Kaba exos 9300 System management
HIGH 8.4 2026-01-26
dormakaba Kaba exos 9300
CVE NVD
CVE-2025-59093
Insecure Password Derivation Function for Database Administrator in dormakaba Kaba exos 9300
HIGH 8.5 2026-01-26
dormakaba Kaba exos 9300
CVE NVD
CVE-2025-59092
Unauthenticated RPC Service in dormakaba Kaba exos 9300
HIGH 8.7 2026-01-26
dormakaba Kaba exos 9300
CVE NVD
CVE-2025-59091
Hardcoded Legacy Accounts Allowing Control Over Access Managers in dormakaba Kaba exos 9300
CRITICAL 9.3 2026-01-26
dormakaba Kaba exos 9300
CVE NVD
CVE-2025-59090
Unauthenticated SOAP API in dormakaba Kaba exos 9300
CRITICAL 9.3 2026-01-26
dormakaba Kaba exos 9300
CVE NVD
CVE-2025-27821
HDFS native client: Out of bounds write in URI parser of native HDFS client
HIGH 7.3 2026-01-26
Apache Software Foundation HDFS native client
CVE NVD
CVE-2025-41083
Improper Neutralization in Altitude Communication Server
MEDIUM 5.1 2026-01-26
Altitude Altitude Communication Server
CVE NVD
CVE-2026-24656
Apache Karaf: Decanter log-socket collector has deserialization vulnerability
LOW 3.7 2026-01-26
Apache Software Foundation Apache Karaf
CVE NVD
CVE-2025-41082
HTTP Request/Response Smuggling in Altitude Communication Server
MEDIUM 6.9 2026-01-26
Altitude Altitude Communication Server
CVE NVD
CVE-2026-1429
WellChoose|Single Sign-On Portal System - Reflected Cross-site Scripting
MEDIUM 4.8 2026-01-26
WellChoose Single Sign-On Portal System
CVE NVD
CVE-2026-1428
WellChoose|Single Sign-On Portal System - OS Command Injection
HIGH 8.7 2026-01-26
WellChoose Single Sign-On Portal System
CVE NVD