Vulnerabilities
Summary — last 7 days
New vulnerabilities2,561▼ 314 vs. last week
Critical / high1,347▲ 83 vs. last week
New active exploitation (KEV)5▼ 7 vs. last week
Unscored (no CVSS)62▼ 466 vs. last week
8 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Deferred | High (7.8) | 0.23% | — | Solarwinds Dameware Mini Remote ControlAI | 6/2/2025 | 6/17/2026 | The SolarWinds Dameware Mini Remote Control was determined to be affected by Incorrect Permissions Local Privilege Escalation Vulnerability. This vulnerability requires local access and a valid low privilege account to be susceptible to this vulnerability. | |
| Modified | Critical (9.1) | 4.0% | — | Solarwinds Dameware Mini Remote Control | 7/13/2021 | 6/17/2026 | In SolarWinds DameWare Mini Remote Control Server 12.0.1.200, insecure file permissions allow file deletion as SYSTEM. | |
| Modified | Critical (9.8) | 5.1% | — | Solarwinds Dameware Mini Remote Control | 10/8/2019 | 6/17/2026 | The Solarwinds Dameware Mini Remote Client agent v12.1.0.89 supports smart card authentication which can allow a user to upload an executable to be executed on the DWRCS.exe host. An unauthenticated, remote attacker can request smart card login and upload and execute an arbitrary executable run under the Local System… | |
| Modified | High (7.4) | 26% | — | Solarwinds Dameware Mini Remote Control | 6/7/2019 | 6/17/2026 | Dameware Remote Mini Control version 12.1.0.34 and prior contains an unauthenticated remote buffer over-read due to the server not properly validating RsaSignatureLen during key negotiation, which could crash the application or leak sensitive information. | |
| Modified | High (7.5) | 19% | — | Solarwinds Dameware Mini Remote Control | 5/2/2019 | 6/17/2026 | DWRCC in SolarWinds DameWare Mini Remote Control 10.0 x64 has a Buffer Overflow associated with the size field for the machine name. | |
| Modified | High (7.8) | 1.7% | — | Solarwinds Dameware Mini Remote Control | 9/7/2018 | 6/17/2026 | SolarWinds DameWare Mini Remote Control before 12.1 has a Buffer Overflow. | |
| Modified | High (7.5) | 4.8% | — | Solarwinds Dameware Mini Remote Control | 11/17/2015 | 6/17/2026 | Stack-based buffer overflow in the URI handler in DWRCC.exe in SolarWinds DameWare Mini Remote Control before 12.0 HotFix 1 allows remote attackers to execute arbitrary code via a crafted commandline argument in a link. | |
| Modified | Medium (5) | 0.84% | — | Solarwinds Dameware Mini Remote Control | 3/23/2004 | 6/16/2026 | DameWare Mini Remote Control 3.x before 3.74 and 4.x before 4.2 transmits the Blowfish encryption key in plaintext, which allows remote attackers to gain sensitive information. |