CWE-669— Incorrect Resource Transfer Between Spheres
57 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-669page 1 of 2
- CVE-2012-2979HIGHCVSS 7.5EG 7.52019-11-01
FreeBSD NSD before 3.2.13 allows remote attackers to crash a NSD child server process (SIGSEGV) and cause a denial of service in the NSD server.
- CVE-2018-17791HIGHCVSS 7.5EG 7.52019-08-21
Newgen OmniFlow Intelligent Business Process Suite (iBPS) 7.0 has an "improper server side validation" vulnerability where client-side validations are tampered, and inappropriate information is stored on the server side and fetched from th…
- CVE-2019-0042MEDIUMCVSS 4.22019-04-10
Juniper Identity Management Service (JIMS) for Windows versions prior to 1.1.4 may send an incorrect message to associated SRX services gateways. This may allow an attacker with physical access to an existing domain connected Windows syste…
- CVE-2019-1020011HIGHCVSS 7.2EG 7.22019-07-29
SmokeDetector intentionally does automatic deployments of updated copies of SmokeDetector without server operator authority.
- CVE-2019-10248HIGHCVSS 8.12019-04-22
Eclipse Vorto versions prior to 0.11 resolved Maven build artifacts for the Xtext project over HTTP instead of HTTPS. Any of these dependent artifacts could have been maliciously compromised by a MITM attack. Hence produced build artifacts…
- CVE-2019-10753MEDIUMCVSS 5.9EG 5.92019-09-05
In all versions prior to version 3.9.6 for eclipse-wtp, all versions prior to version 9.4.4 for eclipse-cdt, and all versions prior to version 3.0.1 for eclipse-groovy, Spotless was resolving dependencies over an insecure channel (http). I…
- CVE-2019-11770HIGHCVSS 8.1EG 8.12019-06-14
In Eclipse Buildship versions prior to 3.1.1, the build files indicate that this project is resolving dependencies over HTTP instead of HTTPS. Any of these artifacts could have been MITM to maliciously compromise them and infect the build …
- CVE-2019-11875HIGHCVSS 8.8EG 8.82019-05-24
In AutomateAppCore.dll in Blue Prism Robotic Process Automation 6.4.0.8445, a vulnerability in access control can be exploited to escalate privileges. The vulnerability allows for abusing the application for fraud or unauthorized access to…
- CVE-2019-13025CRITICALCVSS 9.8EG 9.82019-10-02
Compal CH7465LG CH7465LG-NCIP-6.12.18.24-5p8-NOSH devices have Incorrect Access Control because of Improper Input Validation. The attacker can send a maliciously modified POST (HTTP) request containing shell commands, which will be execute…
- CVE-2019-13263HIGHCVSS 8.8EG 8.82019-08-27
D-link DIR-825AC G1 devices have Insufficient Compartmentalization between a host network and a guest network that are established by the same device. A DHCP Request is sent to the router with a certain Transaction ID field. Following the …
- CVE-2019-13266HIGHCVSS 8.8EG 8.82019-08-27
TP-Link Archer C3200 V1 and Archer C2 V1 devices have Insufficient Compartmentalization between a host network and a guest network that are established by the same device. A DHCP Request is sent to the router with a certain Transaction ID …
- CVE-2020-1048HIGHCVSS 7.8EG 7.82020-05-21
An elevation of privilege vulnerability exists when the Windows Print Spooler service improperly allows arbitrary writing to the file system, aka 'Windows Print Spooler Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-…
- CVE-2020-10778MEDIUMCVSS 6.0EG 6.02020-08-11
In Red Hat CloudForms 4.7 and 5, the read only widgets can be edited by inspecting the forms and dropping the disabled attribute from the fields since there is no server-side validation. This business logic flaw violate the expected behavi…
- CVE-2020-15257MEDIUMCVSS 5.2EG 5.22020-12-01
containerd is an industry-standard container runtime and is available as a daemon for Linux and Windows. In containerd before versions 1.3.9 and 1.4.3, the containerd-shim API is improperly exposed to host network containers. Access contro…
- CVE-2020-15892CRITICALCVSS 9.8EG 9.82020-07-22
An issue was discovered in apply.cgi on D-Link DAP-1520 devices before 1.10b04Beta02. Whenever a user performs a login action from the web interface, the request values are being forwarded to the ssi binary. On the login page, the web inte…
- CVE-2020-24683CRITICALCVSS 9.8EG 9.82020-12-22
The affected versions of S+ Operations (version 2.1 SP1 and earlier) used an approach for user authentication which relies on validation at the client node (client-side authentication). This is not as secure as having the server validate a…
- CVE-2020-25917HIGHCVSS 8.8EG 8.82020-12-26
Stratodesk NoTouch Center before 4.4.68 is affected by: Incorrect Access Control. A low privileged user on the platform, for example a user with "helpdesk" privileges, can perform privileged operations including adding a new administrator …
- CVE-2020-26177MEDIUMCVSS 4.3EG 4.32020-12-18
In tangro Business Workflow before 1.18.1, a user's profile contains some items that are greyed out and thus are not intended to be edited by regular users. However, this restriction is only applied client-side. Manipulating any of the gre…
- CVE-2020-27268MEDIUMCVSS 6.5EG 6.52021-01-19
In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, a client-side control vulnerability in the insulin pump and its AnyDana-i and AnyDana-A mobile applications allows physically proximate attackers to bypass checks for de…
- CVE-2020-5188MEDIUMCVSS 6.5EG 6.52020-02-24
DNN (formerly DotNetNuke) through 9.4.4 has Insecure Permissions.
- CVE-2020-5800CRITICALCVSS 9.8EG 9.82020-12-07
The Eat Spray Love mobile app for both iOS and Android contains logic that allows users to bypass authentication and retrieve or modify information that they would not normally have access to.
- CVE-2020-6862MEDIUMCVSS 5.3EG 5.32020-01-17
V6.0.10P2T2 and V6.0.10P2T5 of F6x2W product are impacted by Information leak vulnerability. Unauthorized users could log in directly to obtain page information without entering a verification code.
- CVE-2021-20411HIGHCVSS 8.1EG 8.12021-02-12
IBM Security Verify Information Queue 1.0.6 and 1.0.7 could allow a user to impersonate another user on the system due to incorrectly updating the session identifier. IBM X-Force ID: 198191.
- CVE-2021-21531HIGHCVSS 8.1EG 8.12021-04-30
Dell Unisphere for PowerMax versions prior to 9.2.1.6 contain an Authorization Bypass Vulnerability. A local authenticated malicious user with monitor role may exploit this vulnerability to perform unauthorized actions.
- CVE-2021-21544LOWCVSS 2.7EG 2.72021-04-30
Dell EMC iDRAC9 versions prior to 4.40.00.00 contain an improper authentication vulnerability. A remote authenticated malicious user with high privileges could potentially exploit this vulnerability to manipulate the username field under t…
- CVE-2021-22806HIGHCVSS 7.5EG 7.52022-02-11
A CWE-669: Incorrect Resource Transfer Between Spheres vulnerability exists that could cause data exfiltration and unauthorized access when accessing a malicious website. Affected Product: spaceLYnk (V2.6.1 and prior), Wiser for KNX (V2.6.…
- CVE-2021-22900HIGHCVSS 7.2EG 7.2⚠ KEV2021-05-27
A vulnerability allowed multiple unrestricted uploads in Pulse Connect Secure before 9.1R11.4 that could lead to an authenticated administrator to perform a file write via a maliciously crafted archive upload in the administrator web inter…
- CVE-2021-24602HIGHCVSS 8.8EG 8.82021-08-23
The HM Multiple Roles WordPress plugin before 1.3 does not have any access control to prevent low privilege users to set themselves as admin via their profile page
- CVE-2021-25973MEDIUMCVSS 6.5EG 6.52021-11-02
In Publify, 9.0.0.pre1 to 9.2.4 are vulnerable to Improper Access Control. “guest” role users can self-register even when the admin does not allow. This happens due to front-end restriction only.
- CVE-2021-29960MEDIUMCVSS 4.3EG 4.32021-06-24
Firefox used to cache the last filename used for printing a file. When generating a filename for printing, Firefox usually suggests the web page title. The caching and suggestion techniques combined may have lead to the title of a website …
- CVE-2021-30120CRITICALCVSS 9.9EG 7.52021-07-09
Kaseya VSA before 9.5.7 allows attackers to bypass the 2FA requirement. The need to use 2FA for authentication in enforce client-side instead of server-side and can be bypassed using a local proxy. Thus rendering 2FA useless. Detailed desc…
- CVE-2021-34574MEDIUMCVSS 4.3EG 4.32021-08-02
In MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual in all versions through v2.11.2 an authenticated attacker can change the password of his account into a new password that violates the password policy b…
- CVE-2021-36338MEDIUMCVSS 6.3EG 8.02022-01-21
Unisphere for PowerMax versions prior to 9.2.2.2 contains a privilege escalation vulnerability. An adjacent malicious user could potentially exploit this vulnerability to escalate their privileges and access functionalities they do not hav…
- CVE-2021-45891HIGHCVSS 8.8EG 8.82022-04-05
An issue was discovered in Softwarebuero Zauner ARC 4.2.0.4., that allows attackers to escalate privileges within the application, since all permission checks are done client-side, not server-side.
- CVE-2022-20658CRITICALCVSS 9.6EG 9.62022-01-14
A vulnerability in the web-based management interface of Cisco Unified Contact Center Management Portal (Unified CCMP) and Cisco Unified Contact Center Domain Manager (Unified CCDM) could allow an authenticated, remote attacker to elevate …
- CVE-2022-30236HIGHCVSS 8.2EG 8.22022-06-02
A CWE-669: Incorrect Resource Transfer Between Spheres vulnerability exists that could allow unauthorized access when an attacker uses cross-domain attacks. Affected Products: Wiser Smart, EER21000 & EER21001 (V4.5 and prior)
- CVE-2022-31233MEDIUMCVSS 6.3EG 8.02022-08-31
Unisphere for PowerMax versions before 9.2.3.15 contain a privilege escalation vulnerability. An adjacent malicious user may potentially exploit this vulnerability to escalate their privileges and access functionalities they do not have ac…
- CVE-2022-35916MEDIUMCVSS 5.3EG 5.32022-08-01
OpenZeppelin Contracts is a library for secure smart contract development. Contracts using the cross chain utilities for Arbitrum L2, `CrossChainEnabledArbitrumL2` or `LibArbitrumL2`, will classify direct interactions of externally owned a…
- CVE-2022-39225MEDIUMCVSS 4.3EG 4.32022-09-23
Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. In versions prior to 4.10.15, or 5.0.0 and above prior to 5.2.6, a user can write to the session object of another user if the session …
- CVE-2022-4446CRITICALCVSS 9.8EG 9.82022-12-13
PHP Remote File Inclusion in GitHub repository tsolucio/corebos prior to 8.0.
- CVE-2022-46173HIGHCVSS 7.2EG 7.22022-12-28
Elrond-GO is a go implementation for the Elrond Network protocol. Versions prior to 1.3.50 are subject to a processing issue where nodes are affected when trying to process a cross-shard relayed transaction with a smart contract deploy tra…
- CVE-2023-22950MEDIUMCVSS 6.5EG 6.52023-04-13
An issue was discovered in TigerGraph Enterprise Free Edition 3.x. Data loading jobs in gsql_server, created by any user with designer permissions, can read sensitive data from arbitrary locations.
- CVE-2023-31114CRITICALCVSS 9.1EG 9.12023-06-07
An issue was discovered in the Shannon RCS component in Samsung Exynos Modem 5123 and 5300. Incorrect resource transfer between spheres can cause unintended querying of the SIM status via a crafted application.
- CVE-2023-31115HIGHCVSS 7.5EG 7.52023-06-07
An issue was discovered in the Shannon RCS component in Samsung Exynos Modem 5123 and 5300. Incorrect resource transfer between spheres can cause changes to the activation mode of RCS via a crafted application.
- CVE-2023-41894MEDIUMCVSS 5.3EG 5.32023-10-20
Home assistant is an open source home automation. The assessment verified that webhooks available in the webhook component are triggerable via the `*.ui.nabu.casa` URL without authentication, even when the webhook is marked as Only accessi…
- CVE-2023-44100HIGHCVSS 7.5EG 7.52023-10-11
Broadcast permission control vulnerability in the Bluetooth module.Successful exploitation of this vulnerability may affect service confidentiality.
- CVE-2023-44104HIGHCVSS 7.5EG 7.52023-10-11
Broadcast permission control vulnerability in the Bluetooth module.Successful exploitation of this vulnerability may affect service confidentiality.
- CVE-2024-29018MEDIUMCVSS 5.9EG 5.92024-03-20
Moby is an open source container framework that is a key component of Docker Engine, Docker Desktop, and other distributions of container tooling or runtimes. Moby's networking implementation allows for many networks, each with their own I…
- CVE-2024-37891MEDIUMCVSS 4.4EG 4.42024-06-17
urllib3 is a user-friendly HTTP client library for Python. When using urllib3's proxy support with `ProxyManager`, the `Proxy-Authorization` header is only sent to the configured proxy, as expected. However, when sending HTTP requests *wi…
- CVE-2024-38519HIGHCVSS 7.8EG 7.82024-07-02
`yt-dlp` and `youtube-dl` are command-line audio/video downloaders. Prior to the fixed versions, `yt-dlp` and `youtube-dl` do not limit the extensions of downloaded files, which could lead to arbitrary filenames being created in the downl…
Map vulnerabilities like CWE-669 to your infrastructure
EchelonGraph correlates every CVE — across CWE-669 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →