CWE-254
308 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-254page 4 of 7
- CVE-2016-9111MEDIUMCVSS 6.8EG 6.82016-11-07
Incorrect access control mechanisms in Citrix Receiver Desktop Lock 4.5 allow an attacker to bypass the authentication requirement by leveraging physical access to a VDI for temporary disconnection of a LAN cable. NOTE: as of 20161208, the…
- CVE-2016-0128MEDIUMCVSS 6.8EG 6.82016-04-12
The SAM and LSAD protocol implementations in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 do not properly establi…
- CVE-2016-5540MEDIUMCVSS 6.7EG 6.72016-10-25
Unspecified vulnerability in the Oracle Retail Xstore Payment component in Oracle Retail Applications 1.x allows local users to affect confidentiality and integrity via unknown vectors.
- CVE-2015-7331MEDIUMCVSS 6.6EG 6.62017-01-30
The mcollective-puppet-agent plugin before 1.11.1 for Puppet allows remote attackers to execute arbitrary code via vectors involving the --server argument.
- CVE-2016-3198MEDIUMCVSS 6.5EG 6.62016-06-16
Microsoft Edge allows remote attackers to bypass the Content Security Policy (CSP) protection mechanism via a crafted document, aka "Microsoft Edge Security Feature Bypass."
- CVE-2017-18480MEDIUMCVSS 6.5EG 6.52019-08-05
cPanel before 62.0.4 does not enforce account ownership for has_mycnf_for_cpuser WHM API calls (SEC-210).
- CVE-2017-18477MEDIUMCVSS 6.5EG 6.52019-08-05
In cPanel before 62.0.4, Exim transports could execute in the context of the nobody account (SEC-206).
- CVE-2016-8508MEDIUMCVSS 6.5EG 6.52017-03-01
Yandex Browser for desktop before 17.1.1.227 does not show Protect (similar to Safebrowsing in Chromium) warnings in web-sites with special content-type, which could be used by remote attacker for prevention Protect warning on own maliciou…
- CVE-2015-7973MEDIUMCVSS 6.5EG 6.52017-01-30
NTP before 4.2.8p6 and 4.3.x before 4.3.90, when configured in broadcast mode, allows man-in-the-middle attackers to conduct replay attacks by sniffing the network.
- CVE-2016-9207MEDIUMCVSS 6.5EG 6.52016-12-14
A vulnerability in the HTTP traffic server component of Cisco Expressway could allow an unauthenticated, remote attacker to initiate TCP connections to arbitrary hosts. This does not allow for full traffic proxy through the Expressway. Aff…
- CVE-2016-2881MEDIUMCVSS 6.5EG 6.52016-11-30
IBM QRadar SIEM 7.1 before MR2 Patch 13 and 7.2 before 7.2.7 and QRadar Incident Forensics 7.2 before 7.2.7 allow remote attackers to bypass intended access restrictions via modified request parameters.
- CVE-2016-4394MEDIUMCVSS 6.5EG 6.52016-10-28
HPE System Management Homepage before v7.6 allows remote attackers to obtain sensitive information via unspecified vectors, related to an "HSTS" issue.
- CVE-2016-5162MEDIUMCVSS 6.5EG 6.52016-09-11
The AllowCrossRendererResourceLoad function in extensions/browser/url_request_util.cc in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux does not properly use an extension's manifest.json web_accessib…
- CVE-2016-5160MEDIUMCVSS 6.5EG 6.52016-09-11
The AllowCrossRendererResourceLoad function in extensions/browser/url_request_util.cc in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux does not properly use an extension's manifest.json web_accessib…
- CVE-2016-5155MEDIUMCVSS 6.5EG 6.52016-09-11
Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux does not properly validate access to the initial document, which allows remote attackers to spoof the address bar via a crafted web site.
- CVE-2016-4376MEDIUMCVSS 6.5EG 6.52016-08-22
HPE FOS before 7.4.1d and 8.x before 8.0.1 on StoreFabric B switches allows remote attackers to obtain sensitive information via unspecified vectors.
- CVE-2016-1452MEDIUMCVSS 6.5EG 6.52016-07-15
Cisco ASR 5000 devices with software 18.3 through 20.0.0 allow remote attackers to make configuration changes over SNMP by leveraging knowledge of the read-write community, aka Bug ID CSCuz29526.
- CVE-2016-3677MEDIUMCVSS 6.5EG 6.52016-06-13
The Huawei Wear App application before 15.0.0.307 for Android does not validate SSL certificates, which allows local users to have unspecified impact via unknown vectors, aka HWPSIRT-2016-03008.
- CVE-2016-3085MEDIUMCVSS 6.5EG 6.52016-06-10
Apache CloudStack 4.5.x before 4.5.2.1, 4.6.x before 4.6.2.1, 4.7.x before 4.7.1.1, and 4.8.x before 4.8.0.1, when SAML-based authentication is enabled and used, allow remote attackers to bypass authentication and access the user interface…
- CVE-2016-0158MEDIUMCVSS 6.5EG 6.52016-04-12
Microsoft Edge allows remote attackers to bypass the Same Origin Policy via unspecified vectors, aka "Microsoft Edge Elevation of Privilege Vulnerability," a different vulnerability than CVE-2016-0161.
- CVE-2016-2846MEDIUMCVSS 6.5EG 6.52016-03-16
Siemens SIMATIC S7-1200 CPU devices before 4.0 allow remote attackers to bypass a "user program block" protection mechanism via unspecified vectors.
- CVE-2016-2398MEDIUMCVSS 6.5EG 6.52016-02-17
Comcast XFINITY Home Security System does not properly maintain base-station communication, which allows physically proximate attackers to defeat sensor functionality by interfering with ZigBee 2.4 GHz transmissions.
- CVE-2016-1615MEDIUMCVSS 6.5EG 6.52016-01-25
The Omnibox implementation in Google Chrome before 48.0.2564.82 allows remote attackers to spoof a document's origin via unspecified vectors.
- CVE-2016-7165MEDIUMCVSS 6.4EG 6.42016-11-15
A vulnerability has been identified in Primary Setup Tool (PST) (All versions < V4.2 HF1), SIMATIC IT Production Suite (All versions < V7.0 SP1 HFX 2), SIMATIC NET PC-Software (All versions < V14), SIMATIC PCS 7 V7.1 (All versions), SIMATI…
- CVE-2016-3168MEDIUMCVSS 6.4EG 6.42016-04-12
The System module in Drupal 6.x before 6.38 and 7.x before 7.43 might allow remote attackers to hijack the authentication of site administrators for requests that download and run files with arbitrary JSON-encoded content, aka a "reflected…
- CVE-2016-3676MEDIUMCVSS 6.4EG 6.42016-04-11
Huawei E3276s USB modems with software before E3276s-150TCPU-V200R002B436D09SP00C00 allow man-in-the-middle attackers to intercept, spoof, or modify network traffic via unspecified vectors related to a fake network.
- CVE-2016-5545MEDIUMCVSS 6.3EG 6.32017-01-27
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: GUI). Supported versions that are affected are VirtualBox prior to 5.0.32 and prior to 5.1.14. Easily exploitable vulnerability allows unauthentica…
- CVE-2016-6628MEDIUMCVSS 6.3EG 6.32016-12-11
An issue was discovered in phpMyAdmin. An attacker may be able to trigger a user to download a specially crafted malicious SVG file. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to 4.0.…
- CVE-2016-0894MEDIUMCVSS 6.3EG 6.32016-05-03
EMC RSA Data Loss Prevention 9.6 before SP2 P5 allows remote authenticated users to bypass intended object access restrictions via a modified parameter.
- CVE-2016-2111MEDIUMCVSS 6.3EG 6.32016-04-25
The NETLOGON service in Samba 3.x and 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2, when a domain controller is configured, allows remote attackers to spoof the computer name of a secure channel's endpoint, and obtain sens…
- CVE-2016-9895MEDIUMCVSS 6.1EG 6.12018-06-11
Event handlers on "marquee" elements were executed despite a strict Content Security Policy (CSP) that disallowed inline JavaScript. This vulnerability affects Firefox < 50.1, Firefox ESR < 45.6, and Thunderbird < 45.6.
- CVE-2016-9010MEDIUMCVSS 6.1EG 6.12017-02-15
IBM WebSphere Message Broker 9.0 and 10.0 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the vic…
- CVE-2016-8329MEDIUMCVSS 6.1EG 6.12017-01-27
Vulnerability in the PeopleSoft Enterprise PeopleTools component of Oracle PeopleSoft Products (subcomponent: Mobile Application Platform). Supported versions that are affected are 8.54 and 8.55. Easily exploitable vulnerability allows una…
- CVE-2016-8303MEDIUMCVSS 6.1EG 6.12017-01-27
Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent: Core). Supported versions that are affected are 11.3.0, 11.4.0, 12.0.1, 12.0.2, 12.0.3, 12.1.0 and 12.2.0. Easily exp…
- CVE-2016-2833MEDIUMCVSS 6.1EG 6.12016-06-13
Mozilla Firefox before 47.0 ignores Content Security Policy (CSP) directives for cross-domain Java applets, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted applet.
- CVE-2016-1682MEDIUMCVSS 6.1EG 6.12016-06-05
The ServiceWorkerContainer::registerServiceWorkerImpl function in WebKit/Source/modules/serviceworkers/ServiceWorkerContainer.cpp in Blink, as used in Google Chrome before 51.0.2704.63, allows remote attackers to bypass the Content Securit…
- CVE-2016-0734MEDIUMCVSS 6.1EG 6.12016-04-07
The web-based administration console in Apache ActiveMQ 5.x before 5.13.2 does not send an X-Frame-Options HTTP header, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web page that contains a (1) F…
- CVE-2016-1177MEDIUMCVSS 6.1EG 6.12016-04-05
The management screen in Falcon WisePoint 4.3.1 and earlier and WisePoint Authenticator 4.1.19.22 and earlier allows remote attackers to conduct clickjacking attacks via unspecified vectors.
- CVE-2016-0832MEDIUMCVSS 6.1EG 6.12016-03-12
Setup Wizard in Android 5.1.x before LMY49H and 6.x before 2016-03-01 allows physically proximate attackers to bypass the Factory Reset Protection protection mechanism and delete data via unspecified vectors, aka internal bug 25955042.
- CVE-2016-2072MEDIUMCVSS 6.1EG 6.12016-02-17
The Administrative Web Interface in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 11.x before 11.0 Build 64.34, 10.5 before 10.5 Build 59.13, 10.5.e before Build 59.1305.e, and 10.1 allows remote attackers to…
- CVE-2016-1140MEDIUMCVSS 6.1EG 6.12016-01-30
KDDI HOME SPOT CUBE devices before 2 allow remote attackers to conduct clickjacking attacks via unspecified vectors.
- CVE-2016-10933MEDIUMCVSS 5.9EG 5.92019-08-26
An issue was discovered in the portaudio crate through 0.7.0 for Rust. There is a man-in-the-middle issue because the source code is downloaded over cleartext HTTP.
- CVE-2017-2411MEDIUMCVSS 5.9EG 5.92019-01-11
In iOS before 11.2, exchange rates were retrieved from HTTP rather than HTTPS. This was addressed by enabling HTTPS for exchange rates.
- CVE-2016-4642MEDIUMCVSS 5.9EG 5.92019-01-11
In iOS before 9.3.3, tvOS before 9.2.2, and OS X El Capitan before v10.11.6 and Security Update 2016-004, proxy authentication incorrectly reported HTTP proxies received credentials securely. This issue was addressed through improved warni…
- CVE-2015-9243MEDIUMCVSS 5.9EG 5.92018-05-29
When server level, connection level or route level CORS configurations in hapi node module before 11.1.4 are combined and when a higher level config included security restrictions (like origin), a higher level config that included security…
- CVE-2011-2683MEDIUMCVSS 5.9EG 5.92017-10-23
reseed seeds random numbers from an insecure HTTP request to random.org during installation, which makes it easier for remote attackers to defeat cryptographic protection mechanisms via a man-in-the-middle attack.
- CVE-2016-7541MEDIUMCVSS 5.9EG 5.92017-03-30
Long lived sessions in Fortinet FortiGate devices with FortiOS 5.x before 5.4.0 could violate a security policy during IPS signature updates when the FortiGate's IPSengine is configured in flow mode. All FortiGate versions with IPS configu…
- CVE-2016-4721MEDIUMCVSS 5.9EG 5.92017-02-20
An issue was discovered in certain Apple products. iOS before 10.1 is affected. macOS before 10.12.1 is affected. The issue involves the "IDS - Connectivity" component, which allows man-in-the-middle attackers to spoof calls via a "switch …
- CVE-2016-5117MEDIUMCVSS 5.9EG 5.92017-01-31
OpenNTPD before 6.0p1 does not validate the CN for HTTPS constraint requests, which allows remote attackers to bypass the man-in-the-middle mitigations via a crafted timestamp constraint with a valid certificate.
- CVE-2016-6624MEDIUMCVSS 5.9EG 5.92016-12-11
An issue was discovered in phpMyAdmin involving improper enforcement of the IP-based authentication rules. When phpMyAdmin is used with IPv6 in a proxy server environment, and the proxy server is in the allowed range but the attacking comp…
Map vulnerabilities like CWE-254 to your infrastructure
EchelonGraph correlates every CVE — across CWE-254 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →