Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

mcdope — Vulnerabilities & Security Advisories 15

Browse all 15 CVE security advisories affecting mcdope. AI-powered Chinese analysis, POCs, and references for each vulnerability.

This page aggregates known vulnerabilities associated with the vendor mcdope, focusing on general weakness categories and relevant security tags. The collection covers a wide spectrum of security flaws, including remote code execution, privilege escalation, and injection vulnerabilities, spanning from the vendor's inception to the most recent disclosures in the current year. By examining this data, users can track the chronological progression of mcdope’s security advisories and identify patterns in reported incidents. This resource allows researchers and practitioners to understand the specific weakness classes that affect mcdope’s ecosystem, providing context on how these flaws are typically exploited or mitigated. Additionally, individuals can look up a specific product’s vulnerability history to assess risk exposure and review past remediation efforts. The data is compiled from public advisories, security bulletins, and community reports, ensuring a comprehensive view of the threat landscape for this vendor. It serves as a reference for security teams to prioritize patching efforts and for analysts to study the development security practices of mcdope over time. This aggregation does not include proprietary or undisclosed information, relying solely on publicly available records to maintain transparency. Users are encouraged to cross-reference this data with official vendor documentation for the most accurate and up-to-date information regarding specific fixes and workarounds.

Found 15 results / 15Clear Filters
Top products by mcdope: pam_usb
CVE IDTitleCVSSSeverityPublished
CVE-2026-44712 pam_usb: Shell injection via device UUID and username in pamusb-conf and pamusb-agent — pam_usbCWE-78 8.2 High2026-05-27
CVE-2026-44709 pam_usb: PINENTRY_FALLBACK_APP environment variable allows arbitrary command execution — pam_usbCWE-78 7.8 High2026-05-27
CVE-2026-44710 pam_usb: NULL pointer dereference from UDisks device fields causes PAM crash and login denial-of-service — pam_usbCWE-476 4.6 Medium2026-05-27
CVE-2026-44711 pam_usb: Symlink attacks on pad directory and pad files enable authentication bypass and root file corruption — pam_usbCWE-59 7.9 High2026-05-27
CVE-2026-44713 pam_usb: Command injection via $TMUX environment variable leads to RCE as root — pam_usbCWE-78 8.8 High2026-05-27
CVE-2026-47269 pam_usb: deny_remote feature incorrectly classifies IPv4-mapped IPv6 remote connections as local — pam_usbCWE-284 7.4 High2026-05-27
CVE-2026-47270 pam_usb: strtok() race condition in multi-threaded PAM hosts can corrupt deny_remote result — pam_usbCWE-362 6.3 Medium2026-05-27
CVE-2026-47271 pam_usb: OOM guards removed by -DNDEBUG cause NULL dereference and authentication process crash — pam_usbCWE-476 5.1 Medium2026-05-27
CVE-2026-47272 pam_usb: OTP pad authentication bypass via missing system pad check and uninitialized RNG buffer — pam_usbCWE-287 7.1 High2026-05-27
CVE-2026-47273 pam_usb: XPath injection via PAM-supplied identifiers in pam_usb configuration queries — pam_usbCWE-91 6.5 Medium2026-05-27
CVE-2026-47274 pam_usb: Uncontrolled search path in pam_usb tools allows privilege escalation via PATH manipulation — pam_usbCWE-427 6.3 Medium2026-05-27
CVE-2026-48064 pam_usb: PAM_RHOST check skipped when deny_remote=false allows XDMCP authentication bypass — pam_usbCWE-863 8.1 High2026-05-27
CVE-2026-48065 pam_usb: Unchecked integer multiplication before xmalloc() in conf.c allows heap-based buffer overflow on 32-bit targets — pam_usbCWE-122 6.7 Medium2026-05-27
CVE-2026-48066 pam_usb: Thread-unsafe static pointer in log.c causes data race under concurrent PAM authentication — pam_usbCWE-362 5.7 Medium2026-05-27
CVE-2026-48792 pam_usb: pusb_has_virtual_input_device() silently discards EACCES, disabling remote desktop detection under non-root execution — pam_usbCWE-390 4.4 Medium2026-05-27

This page lists every published CVE security advisory associated with mcdope. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.