Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
Weakness type CWE-428 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 36 | 34 | 0 |
▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▂▂▁▁▂█▁▂
2025-09 0 · 2025-10 0 · 2025-11 0 · 2025-12 1 · 2026-01 4 · 2026-02 2 · 2026-03 0 · 2026-04 0 · 2026-05 2 · 2026-06 23 · 2026-07 1 · 2026-08 2
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2024-43457 | 7.8 | 46.8 | — | Windows Setup and Deployment Elevation of Privilege Vulnerability |
| CVE-2024-58288 | 8.7 | 30.7 | — | Genexus Protection Server 9.7.2.10 Unquoted Service Path Privilege Escalation |
| CVE-2021-47767 | 8.5 | 12.9 | — | 10-Strike Network Inventory Explorer Pro 9.31 - 'srvInventoryWebServer' Unquoted Servic… |
| CVE-2021-47806 | 8.5 | 12.9 | — | Dup Scout 13.5.28 - 'Multiple' Unquoted Service Path |
| CVE-2021-47807 | 8.5 | 11.9 | — | Sync Breeze 13.6.18 - 'Multiple' Unquoted Service Path |
| CVE-2022-50971 | 8.5 | 10.9 | — | Malwarebytes 4.5 Unquoted Service Path Privilege Escalation |
| CVE-2026-25865 | 8.5 | 10.0 | — | Punto Switcher 4.5.0.583 Unquoted Search Path via WinExec |
| CVE-2020-37100 | 8.5 | 8.6 | — | Sync Breeze Enterprise 12.4.18 - Unquoted Service Path |
| CVE-2025-71326 | 8.5 | 8.2 | — | AVAST Antivirus 25.11 Unquoted Service Path Privilege Escalation |
| CVE-2016-20094 | 8.5 | 8.0 | — | AnyDesk 2.5.0 Unquoted Service Path Elevation of Privilege |
| CVE-2016-20087 | 8.5 | 7.4 | — | Fortitude HTTP 1.0.4.0 Unquoted Service Path Elevation of Privilege |
| CVE-2016-20088 | 8.5 | 7.4 | — | Comodo Chromodo Browser 52.15.25.664 Unquoted Service Path Privilege Escalation |
| CVE-2016-20089 | 8.5 | 7.4 | — | Iperius Remote 1.7.0 Unquoted Service Path Elevation of Privilege |
| CVE-2016-20090 | 8.5 | 7.4 | — | Comodo Dragon Browser 52.15.25.663 Privilege Escalation via Unquoted Service Path |
| CVE-2016-20092 | 8.5 | 7.4 | — | NetDrive 2.6.12 Unquoted Service Path Elevation of Privilege |
| CVE-2016-20093 | 8.5 | 7.4 | — | Wise Care 365 4.27 and Wise Disk Cleaner 9.29 Unquoted Service Path Privilege Escalation |
| CVE-2019-25747 | 8.5 | 7.4 | — | Network Inventory Advisor 5.0.26.0 Unquoted Service Path Privilege Escalation |
| CVE-2020-37254 | 8.5 | 7.4 | — | Wondershare PDFelement 5.2.9 Privilege Escalation via Unquoted Service Path |
| CVE-2023-54353 | 8.5 | 7.4 | — | Chromacam 4.0.3.0 Unquoted Service Path Privilege Escalation |
| CVE-2016-20095 | 8.5 | 7.1 | — | Matrix42 Remote Control Host 3.20.0031 Unquoted Path Privilege Escalation |