28
New Embedded Vulns (7 Days)
348
Active Critical ESVs
tenda
Top Target (30 Days)
6.96
Average ESV CVSS Score
Vulnerability Trends (Last 6 Months)
ESV Severity Distribution (90 Days)
Top Affected ESV Vendors (90 Days)
- tenda 105 Vulns
- apple 51 Vulns
- dlink 44 Vulns
- ruijie 35 Vulns
- qnap 31 Vulns
Recent Critical ESVs
CVE-2020-37002
CRITICAL 9.8
CVE-2025-21589
CRITICAL 9.8
CVE-2026-24858
CRITICAL 9.8
CVE-2025-15467
CRITICAL 9.8
CVE-2020-36940
CRITICAL 9.8
Recently Added Vulnerabilities
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2025-27460 | The hard drives of the device are not encrypted using a full volume encryption feature such as BitLocker. This allows a… | High (7.6) | 2025-07-03 | General-Purpose |
| CVE-2025-27459 | The VNC application stores its passwords encrypted within the registry but uses DES for encryption. As DES is broken, t… | Medium (4.4) | 2025-07-03 | General-Purpose |
| CVE-2025-27458 | The VNC authentication mechanism bases on a challenge-response system where both server and client use the same passwor… | Medium (6.5) | 2025-07-03 | General-Purpose |
| CVE-2025-27457 | All communication between the VNC server and client(s) is unencrypted. This allows an attacker to intercept the traffic… | Medium (6.5) | 2025-07-03 | General-Purpose |
| CVE-2025-27456 | The SMB server's login mechanism does not implement sufficient measures to prevent multiple failed authentication attem… | High (7.5) | 2025-07-03 | General-Purpose |