CWE-913
55 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-913page 1 of 2
- CVE-2017-3200HIGHCVSS 8.12018-06-11
The Java implementation of AMF3 deserializers used in GraniteDS, version 3.1.1.G, may allow instantiation of arbitrary classes via their public parameter-less constructor and subsequently call arbitrary Java Beans setter methods. The abili…
- CVE-2017-3202CRITICALCVSS 9.82018-06-11
The Java implementation of AMF3 deserializers used in Flamingo amf-serializer by Exadel, version 2.2.0, may allow instantiation of arbitrary classes via their public parameter-less constructor and subsequently call arbitrary Java Beans set…
- CVE-2018-19836MEDIUMCVSS 6.12018-12-03
In Metinfo 6.1.3, include/interface/applogin.php allows setting arbitrary HTTP headers (including the Cookie header), and common.inc.php allows registering variables from the $_COOKIE value. This issue can, for example, be exploited in con…
- CVE-2019-15006MEDIUMCVSS 6.5EG 6.52019-12-19
There was a man-in-the-middle (MITM) vulnerability present in the Confluence Previews plugin in Confluence Server and Confluence Data Center. This plugin was used to facilitate communication with the Atlassian Companion application. The Co…
- CVE-2019-1595HIGHCVSS 7.42019-03-06
A vulnerability in the Fibre Channel over Ethernet (FCoE) protocol implementation in Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. The vulnerabili…
- CVE-2019-1617HIGHCVSS 7.42019-03-11
A vulnerability in the Fibre Channel over Ethernet (FCoE) N-port Virtualization (NPV) protocol implementation in Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition. The vulne…
- CVE-2020-1091MEDIUMCVSS 6.5EG 6.52020-09-11
<p>An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory. An attacker who successfully exploited the vulnerability could obtain information to further compromise a use…
- CVE-2020-1097MEDIUMCVSS 6.5EG 6.52020-09-11
<p>An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory. An attacker who successfully exploited the vulnerability could obtain information to further compromise a use…
- CVE-2020-15372MEDIUMCVSS 5.5EG 5.52020-09-25
A vulnerability in the command-line interface in Brocade Fabric OS before Brocade Fabric OS v8.2.2a1, 8.2.2c, v7.4.2g, v8.2.0_CBN3, v8.2.1e, v8.1.2k, v9.0.0, could allow a local authenticated attacker to modify shell variables, which may l…
- CVE-2020-15568CRITICALCVSS 9.8EG 9.82021-01-30
TerraMaster TOS before 4.1.29 has Invalid Parameter Checking that leads to code injection as root. This is a dynamic class method invocation vulnerability in include/exportUser.php, in which an attacker can trigger a call to the exec metho…
- CVE-2020-25802MEDIUMCVSS 4.2EG 4.22020-10-06
Improper Control of Dynamically-Managed Code Resources vulnerability in Crafter Studio of Crafter CMS allows authenticated developers to execute OS commands via Groovy scripting. This issue affects: Crafter Software Crafter CMS 3.0 version…
- CVE-2020-25803MEDIUMCVSS 4.2EG 4.22020-10-06
Improper Control of Dynamically-Managed Code Resources vulnerability in Crafter Studio of Crafter CMS allows authenticated developers to execute OS commands via FreeMarker template exposed objects. This issue affects: Crafter Software Craf…
- CVE-2020-3419MEDIUMCVSS 6.5EG 6.52020-11-18
A vulnerability in Cisco Webex Meetings and Cisco Webex Meetings Server could allow an unauthenticated, remote attacker to join a Webex session without appearing on the participant list. This vulnerability is due to improper handling of au…
- CVE-2020-4100MEDIUMCVSS 4.4EG 4.42020-07-15
"HCL Verse for Android was found to employ dynamic code loading. This mechanism allows a developer to specify which components of the application should not be loaded by default when the application is started. Typically, core components a…
- CVE-2021-21413HIGHCVSS 8.0EG 8.02021-03-30
isolated-vm is a library for nodejs which gives you access to v8's Isolate interface. Versions of isolated-vm before v4.0.0 have API pitfalls which may make it easy for implementers to expose supposed secure isolates to the permissions of …
- CVE-2021-22387CRITICALCVSS 9.8EG 9.82021-08-02
There is an Improper Control of Dynamically Managing Code Resources Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may allow attempts to remotely execute commands.
- CVE-2021-23258MEDIUMCVSS 4.2EG 4.22021-12-02
Authenticated users with Administrator or Developer roles may execute OS commands by SPEL Expression in Spring beans. SPEL Expression does not have security restrictions, which will cause attackers to execute arbitrary commands remotely (R…
- CVE-2021-23259MEDIUMCVSS 4.2EG 4.22021-12-02
Authenticated users with Administrator or Developer roles may execute OS commands by Groovy Script which uses Groovy lib to render a webpage. The groovy script does not have security restrictions, which will cause attackers to execute arbi…
- CVE-2021-23262MEDIUMCVSS 4.2EG 4.22021-12-02
Authenticated administrators may modify the main YAML configuration file and load a Java class resulting in RCE.
- CVE-2021-23267HIGHCVSS 7.6EG 7.62022-05-16
Improper Control of Dynamically-Managed Code Resources vulnerability in Crafter Studio of Crafter CMS allows authenticated developers to execute OS commands via FreeMarker static methods.
- CVE-2021-23448MEDIUMCVSS 6.5EG 9.82021-10-11
All versions of package config-handler are vulnerable to Prototype Pollution when loading config files.
- CVE-2021-26276MEDIUMCVSS 5.3EG 5.32021-01-27
scripts/cli.js in the GoDaddy node-config-shield (aka Config Shield) package before 0.2.2 for Node.js calls eval when processing a set command. NOTE: the vendor reportedly states that this is not a vulnerability. The set command was not in…
- CVE-2021-32563CRITICALCVSS 9.8EG 9.82021-05-11
An issue was discovered in Thunar before 4.16.7 and 4.17.x before 4.17.2. When called with a regular file as a command-line argument, it delegates to a different program (based on the file type) without user confirmation. This could be use…
- CVE-2021-32813MEDIUMCVSS 4.8EG 4.82021-08-03
Traefik is an HTTP reverse proxy and load balancer. Prior to version 2.4.13, there exists a potential header vulnerability in Traefik's handling of the Connection header. Active exploitation of this issue is unlikely, as it requires that a…
- CVE-2021-42809MEDIUMCVSS 6.5EG 6.52021-12-20
Improper Access Control of Dynamically-Managed Code Resources (DLL) in Thales Sentinel Protection Installer could allow the execution of arbitrary code.
- CVE-2022-25265HIGHCVSS 7.8EG 7.82022-02-16
In the Linux kernel through 5.16.10, certain binary files may have the exec-all attribute if they were built in approximately 2003 (e.g., with GCC 3.2.2 and Linux kernel 2.4.20). This can cause execution of bytes located in supposedly non-…
- CVE-2022-25355MEDIUMCVSS 5.3EG 5.32022-02-24
EC-CUBE 3.0.0 to 3.0.18-p3 and EC-CUBE 4.0.0 to 4.1.1 improperly handle HTTP Host header values, which may lead a remote unauthenticated attacker to direct the vulnerable version of EC-CUBE to send an Email with some forged reissue-passwor…
- CVE-2022-2625HIGHCVSS 8.0EG 8.02022-08-18
A vulnerability was found in PostgreSQL. This attack requires permission to create non-temporary objects in at least one schema, the ability to lure or wait for an administrator to create or update an affected extension in that schema, and…
- CVE-2022-27889MEDIUMCVSS 5.3EG 9.12022-06-14
The Multipass service was found to have code paths that could be abused to cause a denial of service for authentication or authorization operations. A malicious attacker could perform an application-level denial of service attack, potentia…
- CVE-2022-3225HIGHCVSS 8.8EG 8.82022-09-16
Improper Control of Dynamically-Managed Code Resources in GitHub repository budibase/budibase prior to 1.3.20.
- CVE-2022-36067CRITICALCVSS 10.0EG 10.02022-09-06
vm2 is a sandbox that can run untrusted code with whitelisted Node's built-in modules. In versions prior to version 3.9.11, a threat actor can bypass the sandbox protections to gain remote code execution rights on the host running the sand…
- CVE-2022-39051MEDIUMCVSS 6.8EG 8.82022-09-05
Attacker might be able to execute malicious Perl code in the Template toolkit, by having the admin installing an unverified 3th party package
- CVE-2022-40634MEDIUMCVSS 6.4EG 6.42022-09-13
Improper Control of Dynamically-Managed Code Resources vulnerability in Crafter Studio of Crafter CMS allows authenticated developers to execute OS commands via FreeMarker SSTI.
- CVE-2022-40635MEDIUMCVSS 6.4EG 6.42022-09-13
Improper Control of Dynamically-Managed Code Resources vulnerability in Crafter Studio of Crafter CMS allows authenticated developers to execute OS commands via Groovy Sandbox Bypass.
- CVE-2022-4318HIGHCVSS 7.8EG 7.82023-09-25
A vulnerability was found in cri-o. This issue allows the addition of arbitrary lines into /etc/passwd by use of a specially crafted environment variable.
- CVE-2022-43441HIGHCVSS 8.1EG 8.12023-03-16
A code execution vulnerability exists in the Statement Bindings functionality of Ghost Foundation node-sqlite3 5.1.1. A specially-crafted Javascript file can lead to arbitrary code execution. An attacker can provide malicious input to trig…
- CVE-2022-44000CRITICALCVSS 9.8EG 9.82022-11-16
An issue was discovered in BACKCLICK Professional 5.9.63. Due to an exposed internal communications interface, it is possible to execute arbitrary system commands on the server.
- CVE-2023-25560HIGHCVSS 8.2EG 8.22023-02-11
DataHub is an open-source metadata platform. The AuthServiceClient which is responsible for creation of new accounts, verifying credentials, resetting them or requesting access tokens, crafts multiple JSON strings using format strings with…
- CVE-2023-29017CRITICALCVSS 10.0EG 10.02023-04-06
vm2 is a sandbox that can run untrusted code with whitelisted Node's built-in modules. Prior to version 3.9.15, vm2 was not properly handling host objects passed to `Error.prepareStackTrace` in case of unhandled async errors. A threat acto…
- CVE-2023-29199CRITICALCVSS 9.8EG 9.82023-04-14
There exists a vulnerability in source code transformer (exception sanitization logic) of vm2 for versions up to 3.9.15, allowing attackers to bypass `handleException()` and leak unsanitized host exceptions which can be used to escape the …
- CVE-2023-31032HIGHCVSS 7.5EG 7.52024-01-12
NVIDIA DGX A100 SBIOS contains a vulnerability where a user may cause a dynamic variable evaluation by local access. A successful exploit of this vulnerability may lead to denial of service.
- CVE-2023-33175CRITICALCVSS 9.1EG 9.12023-05-30
ToUI is a Python package for creating user interfaces (websites and desktop apps) from HTML. ToUI is using Flask-Caching (SimpleCache) to store user variables. Websites that use `Website.user_vars` property. It affects versions 2.0.1 to 2.…
- CVE-2023-35930LOWCVSS 3.7EG 3.72023-06-26
SpiceDB is an open source, Google Zanzibar-inspired, database system for creating and managing security-critical application permissions. Any user making a negative authorization decision based on the results of a `LookupResources` request…
- CVE-2023-37271HIGHCVSS 8.4EG 8.42023-07-11
RestrictedPython is a tool that helps to define a subset of the Python language which allows users to provide a program input into a trusted environment. RestrictedPython does not check access to stack frames and their attributes. Stack fr…
- CVE-2023-39983MEDIUMCVSS 5.3EG 5.32023-09-02
A vulnerability that poses a potential risk of polluting the MXsecurity sqlite database and the nsm-web UI has been identified in MXsecurity versions prior to v1.0.1. This vulnerability might allow an unauthenticated remote attacker to reg…
- CVE-2023-4041CRITICALCVSS 9.8EG 9.82023-08-23
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow'), Out-of-bounds Write, Download of Code Without Integrity Check vulnerability in Silicon Labs Gecko Bootloader on ARM (Firmware Update File Parser modules) allows Code I…
- CVE-2023-43177CRITICALCVSS 9.8EG 9.82023-11-18
CrushFTP prior to 10.5.1 is vulnerable to Improperly Controlled Modification of Dynamically-Determined Object Attributes.
- CVE-2023-50386HIGHCVSS 8.8EG 9.02024-02-09
Improper Control of Dynamically-Managed Code Resources, Unrestricted Upload of File with Dangerous Type, Inclusion of Functionality from Untrusted Control Sphere vulnerability in Apache Solr.This issue affects Apache Solr: from 6.0.0 throu…
- CVE-2023-5763MEDIUMCVSS 6.8EG 6.82023-11-03
In Eclipse Glassfish 5 or 6, running with old versions of JDK (lower than 6u211, or < 7u201, or < 8u191), allows remote attackers to load malicious code on the server via access to insecure ORB listeners.
- CVE-2023-6184MEDIUMCVSS 5.0EG 5.02024-01-18
Cross SiteScripting vulnerability in Citrix Session Recording allows attacker to perform Cross Site Scripting
Map vulnerabilities like CWE-913 to your infrastructure
EchelonGraph correlates every CVE — across CWE-913 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →