CWE-1327
17 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-1327page 1 of 1
- CVE-2022-29820LOWCVSS 3.0EG 3.52022-04-28
In JetBrains PyCharm before 2022.1 exposure of the debugger port to the internal network was possible
- CVE-2023-1968CRITICALCVSS 10.0EG 10.02023-04-28
Instruments with Illumina Universal Copy Service v2.x are vulnerable due to binding to an unrestricted IP address. An unauthenticated malicious actor could use UCS to listen on all IP addresses, including those capable of accepting remote…
- CVE-2023-41742HIGHCVSS 7.5EG 4.32023-08-31
Excessive attack surface due to binding to an unrestricted IP address. The following products are affected: Acronis Agent (Linux, macOS, Windows) before build 30430, Acronis Cyber Protect 15 (Linux, macOS, Windows) before build 35979.
- CVE-2023-5398MEDIUMCVSS 5.9EG 5.92024-04-17
Server receiving a malformed message based on a list of IPs resulting in heap corruption causing a denial of service. See Honeywell Security Notification for recommendations on upgrading and versioning.
- CVE-2024-36105MEDIUMCVSS 5.3EG 5.32024-05-27
dbt enables data analysts and engineers to transform their data using the same practices that software engineers use to build applications. Prior to versions 1.6.15, 1.7.15, and 1.8.1, Binding to `INADDR_ANY (0.0.0.0)` or `IN6ADDR_ANY (::)…
- CVE-2024-47176MEDIUMCVSS 5.3EG 9.02024-09-26
CUPS is a standards-based, open-source printing system, and `cups-browsed` contains network printing functionality including, but not limited to, auto-discovering print services and shared printers. `cups-browsed` binds to `INADDR_ANY:631`…
- CVE-2024-49382MEDIUMCVSS 4.3EG 3.52024-10-15
Excessive attack surface in archive-server service due to binding to an unrestricted IP address. The following products are affected: Acronis Cyber Protect 16 (Linux, Windows) before build 38690.
- CVE-2024-49383MEDIUMCVSS 4.3EG 3.52024-10-15
Excessive attack surface in acep-importer service due to binding to an unrestricted IP address. The following products are affected: Acronis Cyber Protect 16 (Linux, Windows) before build 38690.
- CVE-2024-49384MEDIUMCVSS 4.3EG 3.52024-10-15
Excessive attack surface in acep-collector service due to binding to an unrestricted IP address. The following products are affected: Acronis Cyber Protect 16 (Linux, Windows) before build 38690.
- CVE-2025-11538MEDIUMCVSS 6.8EG 6.82025-11-13
A vulnerability exists in Keycloak's server distribution where enabling debug mode (--debug <port>) insecurely defaults to binding the Java Debug Wire Protocol (JDWP) port to all network interfaces (0.0.0.0). This exposes the debug port to…
- CVE-2025-3621CRITICALCVSS 9.6EG 9.62025-07-15
Vulnerabilities* in ActADUR local server product, developed and maintained by ProTNS, allows Remote Code Inclusion on host systems. * vulnerabilities: * Improper Neutralization of Special Elements used in a Command ('Command Injec…
- CVE-2025-55322HIGHCVSS 7.3EG 7.32025-09-24
Binding to an unrestricted ip address in GitHub allows an unauthorized attacker to execute code over a network.
- CVE-2025-61934CRITICALCVSS 10.0EG 10.02025-10-23
A binding to an unrestricted IP address vulnerability was discovered in Productivity Suite software version v4.4.1.19. The vulnerability allows an unauthenticated remote attacker to interact with the ProductivityService PLC simulator and r…
- CVE-2026-0481CRITICALCVSS 9.2EG 9.22026-05-15
Unrestricted IP address binding in the AMD Device Metrics Exporter (ROCm ecosystem) could allow a remote attacker to perform unauthorized changes to the GPU configuration, potentially resulting in loss of availability
- CVE-2026-21528MEDIUMCVSS 6.5EG 6.52026-02-10
Binding to an unrestricted ip address in Azure IoT Explorer allows an unauthorized attacker to disclose information over a network.
- CVE-2026-28395MEDIUMCVSS 6.5EG 6.52026-03-05
OpenClaw version 2026.1.14-1 prior to 2026.2.12 contains an improper network binding vulnerability in the Chrome extension (must be installed and enabled) relay server that treats wildcard hosts as loopback addresses, allowing the relay HT…
- CVE-2026-42503HIGHCVSS 8.8EG 8.82026-05-06
gopls by default communicates via pipe. However, -port and -listen flags are supported as means of debugging. If -listen is given a value without an explicit host (e.g. :8080), or -port is used, gopls will listen on 0.0.0.0. As a result,…
Map vulnerabilities like CWE-1327 to your infrastructure
EchelonGraph correlates every CVE — across CWE-1327 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →