Skip to main content

CWE archive

CWE-1263 CVEs

Programmatic archive

13 CVEs tagged with CWE-12631 Critical, 3 High, 8 Medium, 1 Low, 0 Unrated.

CVE-2025-4386

Published May 7, 2026

Medtronic MyCareLink Patient Monitor has an internal serial interface, which allows an attacker with physical access to access a login prompt via a UART terminal.​

CVSS 6.8 · Medium

CVE-2025-59696

Published Dec 2, 2025

Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, allow a physically proximate attacker to modify or erase tamper events via the Chassis managemen…

CVSS 3.2 · Low

CVE-2025-6785

Published Sep 4, 2025

Securing externally available CAN wires can easily allow physical access to the CAN bus, allowing possible injection of specially formed CAN messages to control remote start funct…

CVSS 4.7 · Medium

CVE-2025-8762

Published Aug 13, 2025

A vulnerability was found in INSTAR 2K+ and 4K 3.11.1 Build 1124. This issue affects some unknown processing of the component UART Interface. The manipulation leads to improper ph…

CVSS 5.2 · Medium

CVE-2024-48973

Published Nov 14, 2024

The debug port on the ventilator's serial interface is enabled by default. This could allow an attacker to send and receive messages over the debug port (which are unencrypted; se…

CVSS 9.3 · Critical

CVE-2024-36438

Published Jul 15, 2024

eLinkSmart Hidden Smart Cabinet Lock 2024-05-22 has Incorrect Access Control and fails to perform an authorization check which can lead to card duplication and other attacks.

CVSS 7.3 · High

CVE-2024-39512

Published Jul 10, 2024

An Improper Physical Access Control vulnerability in the console port control of Juniper Networks Junos OS Evolved allows an attacker with physical access to the device to get acc…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2022-32506

Published May 14, 2024

An issue was discovered on certain Nuki Home Solutions devices. An attacker with physical access to the circuit board could use the SWD debug features to control the execution of…

CVSS 6.4 · Medium

CVE-2024-28326

Published Apr 26, 2024

Incorrect Access Control in ASUS RT-N12+ B1 and RT-N12 D1 routers allows local attackers to obtain root terminal access via the the UART interface.

CVSS 6.8 · Medium

CVE-2023-38290

Published Apr 22, 2024

Certain software builds for the BLU View 2 and Sharp Rouvo V Android devices contain a vulnerable pre-installed app with a package name of com.evenwell.fqc (versionCode='9020801',…

CVSS 7.8 · High
Showing 1-13 of 13 CVEsPage 1 of 1