CWE-300: CWE-300

9
Total CVEs
0
Critical
6
High
7.1
Avg CVSS

Yearly Trend

2026
1
2025
3
2024
2
2023
1
2021
2

Top Affected Vendors

1 Eclipse 1
2 Ibm 1
3 Cisco 1
4 Rockwellautomation 1
5 Lizardbyte 1
6 Softether 1

All CWE-300 CVEs (9)

CVE-2024-31206
8.2

The dectalk-tts Node package versions 1.0.0 sends API requests over unencrypted HTTP, allowing attackers to intercept and modify traffic in man-in-the...

Apr 4, 2024
CVE-2024-36553
8.1

The Forever KidsWatch Call Me KW-50 smartwatch is vulnerable to man-in-the-middle (MITM) attacks due to insufficient security in its communication pro...

Feb 6, 2025
CVE-2021-41033
8.1

This vulnerability allows man-in-the-middle attacks when Eclipse Equinox installations use HTTP repositories for p2 updates. Attackers can intercept a...

Sep 13, 2021
CVE-2025-20122
7.8

This vulnerability allows authenticated local attackers with read-only privileges on Cisco Catalyst SD-WAN Manager to escalate to root privileges on t...

May 7, 2025
CVE-2023-32634
7.8

An authentication bypass vulnerability in SoftEther VPN allows local attackers to perform man-in-the-middle attacks against the CiRpcServerThread func...

Oct 12, 2023
CVE-2021-32926
7.5

This vulnerability allows an authenticated attacker to intercept password change requests and replace the legitimate password hash with their own, loc...

Jun 3, 2021
CVE-2024-45407
6.5

This vulnerability in Sunshine game streaming software allows an attacker to gain unauthorized access by exploiting a flaw in the pairing process. Dur...

Sep 10, 2024
CVE-2023-38272
5.9

This vulnerability in IBM Cloud Pak System allows authenticated users with network access to view sensitive information from command-line interface ar...

Mar 27, 2025
CVE-2026-23811
4.3

This vulnerability allows attackers to bypass client isolation mechanisms in network devices, potentially enabling traffic redirection and man-in-the-...

Mar 4, 2026

About CWE-300 (CWE-300)

Our database tracks 9 CVEs classified as CWE-300, with 0 rated critical and 6 rated high severity. The average CVSS score for CWE-300 vulnerabilities is 7.1.

External reference: View CWE-300 on MITRE CWE →

Monitor CWE-300 Vulnerabilities

Get alerted when new CWE-300 CVEs affect your infrastructure.

Start Monitoring Free