CWE-146
6 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-146page 1 of 1
- CVE-2022-4055HIGHCVSS 7.4EG 7.42022-11-19
When xdg-mail is configured to use thunderbird for mailto URLs, improper parsing of the URL can lead to additional headers being passed to thunderbird that should not be included per RFC 2368. An attacker can use this method to create a ma…
- CVE-2023-20035HIGHCVSS 7.8EG 7.82023-03-23
A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to execute arbitrary commands with elevated privileges. This vulnerability is due to insufficient input validation by the system CLI. A…
- CVE-2023-20117HIGHCVSS 7.2EG 7.22023-04-05
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV320 and RV325 Dual Gigabit WAN VPN Routers could allow an authenticated, remote attacker to inject and execute arbitrary commands on the underlying op…
- CVE-2023-20128HIGHCVSS 7.2EG 7.22023-04-05
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV320 and RV325 Dual Gigabit WAN VPN Routers could allow an authenticated, remote attacker to inject and execute arbitrary commands on the underlying op…
- CVE-2024-20329CRITICALCVSS 9.9EG 9.92024-10-23
A vulnerability in the SSH subsystem of Cisco Adaptive Security Appliance (ASA) Software could allow an authenticated, remote attacker to execute operating system commands as root. This vulnerability is due to insufficient validation of…
- CVE-2024-20470HIGHCVSS 7.2EG 6.52024-10-02
A vulnerability in the web-based management interface of Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device. In o…
Map vulnerabilities like CWE-146 to your infrastructure
EchelonGraph correlates every CVE — across CWE-146 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →