CVE-2024-30063
Windows Distributed File System (DFS) Remote Code Execution Vulnerability
CVSS
6.7
Medium
EPSS
1.0%
p62
KEV
—
Exploit Today
19
0-100
Published: Jun 11, 2024 · Last modified: Jul 20, 2026 · CWE-641
1.0%EPSS · 30 days1.0%
2026-08-202026-09-17
Windows Distributed File System (DFS) Remote Code Execution Vulnerability
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-202824.9 MED45.0%
——14A vulnerability in Cisco ISE could allow an authenticated, remote attacker to obtain write access on the underlying operating system of an affected device.
This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to obtain write access to the underlying operating system.
To exploit this vulnerability, the attacker must have valid administrative credentials.
Note: For CVE-2026-20282, Cisco has assigned a Security Impact Rating (SIR) of High rather than Medium as the score indicates. The reason is that it is easy to get to root from the achieved privilege level.2dCVE-2026-465817.5 HIG37.3%
——11In Eclipse Mojarra versions 2.3 and following, URL handing in `DefaultFaceletFactory` does not properly sanitize and/or block remote URLs, allowing an attacker to specify a URL to a remote Facelet which will be included and processed as part of the normal request, with the privileges of the target server. This could allow access to restricted files such as `WEB-INF/web.xml` or `/etc/passwd`.39dCVE-2026-505107.8 HIG29.5%
——9Improper restriction of names for files and other resources in Github Copilot allows an unauthorized attacker to execute code locally.58dCVE-2026-271408.8 HIG49.9%
——15SWIG file names containing 'cgo' and well-crafted payloads could lead to code smuggling and arbitrary code execution at build time due to trust layer bypass.8d