Single A
Vendor:
First CVE: Jun 3, 2026 · Active for under a year
11
Total CVEs
More Total CVEs than 89% of tracked products
11.0
Avg CVEs / Year
Higher CVE frequency than 96% of tracked products
8.5
Avg CVSS
Higher Avg CVSS than 76% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Single A over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jun 3, 2026
53 days ago
Most Recent CVE
Jun 3, 2026
53 days ago
CVE Severity & Scoring
Single A11 CVEs
91%
9%
All CVEs352,719 CVEs
45%
40%
11%
HighCritical
Attack Vector
Local0 (0.0%)
Network11 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low11 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None11 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low10 (90.9%)
High0 (0.0%)
None1 (9.1%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (11 CVEs).
11 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-35075CRITICAL An unauthenticated remote attacker can recover a default, hard coded password from a firmware image and thus gain full access to all affected devices. | Jun 3, 2026 | 9.8 | 41 | NO | NO |
CVE-2026-35085HIGH A remote attacker with user privileges can exploit a stack buffer overflow in gdv-serverconfig to gain full system access as root. | Jun 3, 2026 | 8.8 | 37 | NO | NO |
CVE-2026-35084HIGH A remote attacker with user privileges can exploit a stack buffer overflow in dali-devconfig to gain full system access as root. | Jun 3, 2026 | 8.8 | 37 | NO | NO |
CVE-2026-35083HIGH A remote attacker with user privileges can exploit a stack buffer overflow to gain full system access as root. | Jun 3, 2026 | 8.8 | 37 | NO | NO |
CVE-2026-35082HIGH The ugw-logread method allows a remote attacker with user privileges to access arbitrary local files due to insufficient validation of user-supplied input. | Jun 3, 2026 | 8.8 | 37 | NO | NO |
CVE-2026-35080HIGH The ugw-restoreinfo method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input. | Jun 3, 2026 | 8.1 | 35 | NO | NO |
CVE-2026-35079HIGH The ugw-restore method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input. | Jun 3, 2026 | 8.1 | 35 | NO | NO |
CVE-2026-35078HIGH The ugw-logstop method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input. | Jun 3, 2026 | 8.1 | 35 | NO | NO |
CVE-2026-35077HIGH The ugw-delete-file method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input. | Jun 3, 2026 | 8.1 | 35 | NO | NO |
CVE-2026-35076HIGH The bac-scanresult method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input. | Jun 3, 2026 | 8.1 | 35 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (11 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (11 CVEs).
Media Mentions
Signals from CVEs in this product scope (11 CVEs).
Top CNAs Publishing CVEs For Single A
Top CWEs
Versions
No cataloged versions.