CWE-672: CWE-672

12
Total CVEs
0
Critical
9
High
7.1
Avg CVSS

Yearly Trend

2026
1
2025
8
2024
1
2022
2

Top Affected Vendors

1 Linux 2
2 Siemens 2
3 Fortinet 1
4 F5 1
5 Dell 1
6 Apple 1
7 Mongodb 1
8 Xen 1
9 Plex 1

All CWE-672 CVEs (12)

CVE-2024-47571
8.1

This vulnerability in Fortinet FortiManager allows attackers with valid credentials to gain improper access to FortiGate devices through an operation ...

Jan 14, 2025
CVE-2025-58149
7.5

This Xen hypervisor vulnerability allows a guest domain to retain access to 64-bit memory BARs (Base Address Registers) after PCI device detachment, c...

Oct 31, 2025
CVE-2025-55669
7.5

A vulnerability in F5 BIG-IP Advanced WAF and ASM allows undisclosed HTTP/2 traffic to cause the Traffic Management Microkernel (TMM) to terminate whe...

Oct 15, 2025
CVE-2025-6031
7.5

Amazon Cloud Cam devices attempt to connect to deprecated infrastructure when powered on, defaulting to a pairing status that allows attackers to bypa...

Jun 12, 2025
CVE-2021-37204
7.5

An unauthenticated attacker can cause denial-of-service on Siemens SIMATIC industrial control systems by sending specially crafted packets to port 102...

Feb 9, 2022
CVE-2021-37185
7.5

This vulnerability allows unauthenticated attackers to cause denial-of-service conditions in Siemens industrial control systems by sending specially c...

Feb 9, 2022
CVE-2025-69415
7.1

This vulnerability in Plex Media Server allows attackers to access account information using device tokens even after devices have been disassociated ...

Jan 2, 2026
CVE-2025-31253
7.1

This vulnerability in iOS/iPadOS FaceTime allows audio to continue transmitting even when the microphone is muted during calls. This affects users of ...

May 12, 2025
CVE-2024-57929
7.1

A use-after-free vulnerability in the Linux kernel's device-mapper array cursor implementation allows double-freeing of memory blocks when reading cor...

Jan 19, 2025
CVE-2025-21117
6.6

Dell Avamar versions 19.4+ have an access token reuse vulnerability in the AUI (Avamar User Interface). A local attacker with low privileges could exp...

Feb 5, 2025
CVE-2025-10060
6.5

MongoDB Server may allow upsert operations retried within a transaction to violate unique index constraints, causing an invariant failure and server c...

Sep 5, 2025
CVE-2024-56674
5.5

A race condition in the Linux kernel's virtio_net driver can cause a kernel crash when network interfaces are repeatedly brought down and up under hea...

Dec 27, 2024

About CWE-672 (CWE-672)

Our database tracks 12 CVEs classified as CWE-672, with 0 rated critical and 9 rated high severity. The average CVSS score for CWE-672 vulnerabilities is 7.1.

External reference: View CWE-672 on MITRE CWE →

Monitor CWE-672 Vulnerabilities

Get alerted when new CWE-672 CVEs affect your infrastructure.

Start Monitoring Free