Skip to main content
0-Doubt
NewsInvestorsQuestionnairesDeveloperHelp
AnonymousSign in
0-Doubt — neutral IT/Security research
BrowseResellersCertified analystsRFI/RFP questionnairesHow trust worksHelp & FAQAPI
  1. Home/
  2. runZero/
  3. runZero Asset Fingerprinting

runZero Asset Fingerprinting

FingerprintingAI-generated from public sourcesAuto-generated by 0-Doubt from public vendor materials. Not verified by the vendor or an analyst. Check the freshness indicator.Lowest independence — unverified. A higher label means a more independent source — not a better product.How trust works →Secure coding rating: 0/100How this score is computedA product with no known CVEs starts at a neutral score and climbs the longer it goes without one; a product with known CVEs is penalized by severity instead. This one has 14 known CVEs (vendor-level match — see the CVE list below) and is tracked as ~47 days old in our catalog (a stand-in for real release date, which we don't track). The platform admin controls the formula's weights.

Agentless, credential-free high-fidelity device profiling.

by runZero · runzero.com · source ↗

Known CVEs (14)About this listSourced from the public NVD database, matched by vendor name. Shown here at the vendor level — we don't track per-product/version data, so a listed CVE may affect a different product from this vendor, not necessarily this one. “New” means published within the last 30 days. “Actively exploited” means CISA's Known Exploited Vulnerabilities (KEV) catalog confirms real-world exploitation, not just a theoretical severity score.

RSS ⇢
  • CVE-2026-7778 ↗MEDIUM 5.02026

    An issue that could allow a dashboard configuration to be viewed from outside of the authorized organization scope has been resolved. This is an instance of CWE-269: Improper Privilege Management, and…

  • CVE-2026-5384 ↗MEDIUM 5.82026

    An issue that could allow a credential to be updated and used for a task from outside of the authorized organization scope has been resolved. This is an instance of CWE-863: Incorrect Authorization, a…

  • CVE-2026-5383 ↗MEDIUM 4.42026

    An issue that could allow access to Explorer groups from outside of the authorized organization scope has been resolved. This is an instance of CWE-863: Incorrect Authorization, and has an estimated C…

  • CVE-2026-5382 ↗LOW 3.02026

    An issue that could expose records outside of the authorized organization scope through the MCP endpoints has been resolved. This is an instance of CWE-863: Incorrect Authorization, and has an estimat…

  • CVE-2026-5381 ↗LOW 2.22026

    An issue that could expose task information outside of the authorized organization scope has been resolved. This is an instance of CWE-863: Incorrect Authorization, and has an estimated CVSS score of …

  • CVE-2026-5380 ↗MEDIUM 5.32026

    An issue that could allow an authorized user to view the clear-text secrets for a subset of credential types and fields has been resolved. This is an instance of CWE-522: Insufficiently Protected Cred…

  • CVE-2026-5379 ↗LOW 3.02026

    An issue that allowed MCP agents to access certificate information from outside of their authorized organization scope has been resolved. This is an instance of CWE-863: Incorrect Authorization, and h…

  • CVE-2026-5378 ↗MEDIUM 5.82026

    An issue that allowed administrators to create and update users outside of their authorized organization scope has been resolved. This is an instance of CWE-863: Incorrect Authorization, and has an es…

  • CVE-2026-5376 ↗MEDIUM 5.92026

    An issue that could prevent session inactivity timeouts from triggering due to automatic page reloading has been resolved. This is an instance of CWE-613: Insufficient Control of Resources After Expir…

  • CVE-2026-5375 ↗LOW 2.72026

    An issue that could allow a user with access to a credential to view sensitive fields through an API response has been resolved. This is an instance of CWE-200: Exposure of Sensitive Information to an…

  • CVE-2026-5374 ↗MEDIUM 5.82026

    An issue that allowed MCP agents to access remediation and asset information from outside of the authorized organization scope has been resolved. This is an instance of CWE-863: Incorrect Authorizatio…

  • CVE-2026-5373 ↗HIGH 8.12026

    An issue that allowed all-organization administrators to promote accounts to superuser status has been resolved. This is an instance of CWE-269: Improper Privilege Management, and has an estimated CVS…

  • CVE-2026-5372 ↗MEDIUM 6.42026

    An issue that allowed a SQL injection attack vector related to saved queries (introduced in version 4.0.260123.0). This is an instance of CWE-89: Improper Neutralization of Special Elements used in an…

  • CVE-2025-8452 ↗MEDIUM 4.32025

    By using the "uscan" protocol provided by the eSCL specification, an attacker can discover the serial number of multi-function printers that implement the Brother-provided firmware. This serial number…

Materials

0

No datasheets, whitepapers, case studies, videos, or demos linked yet.

Other Cyber Asset Attack Surface Management (CAASM) products

see all →
  • Absolute Visibility · Absolute
  • AlgoSec AppViz · AlgoSec
  • ApexaiQ · ApexaiQ
  • Armis Centrix™ Asset Intelligence Engine · Armis
  • Armis Centrix™ for Asset Management and Security · Armis
  • Attack Surface Management · Liongard
  • Axonius Asset Management · Axonius
  • Axonius Cyber Asset Management · Axonius