CWE-1262
9 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-1262page 1 of 1
- CVE-2015-8325HIGHCVSS 7.8EG 7.82016-05-01
The do_setup_env function in session.c in sshd in OpenSSH through 7.2p2, when the UseLogin feature is enabled and PAM is configured to read .pam_environment files in user home directories, allows local users to gain privileges by triggerin…
- CVE-2022-23005HIGHCVSS 8.7EG 8.72023-01-23
Western Digital has identified a weakness in the UFS standard that could result in a security vulnerability. This vulnerability may exist in some systems where the Host boot ROM code implements the UFS Boot feature to boot from UFS complia…
- CVE-2023-20599HIGHCVSS 7.9EG 7.92025-06-10
Improper register access control in ASP may allow a privileged attacker to perform unauthorized access to ASP’s Crypto Co-Processor (CCP) registers from x86 resulting in potential loss of control of cryptographic key pointer/index leadin…
- CVE-2024-45556MEDIUMCVSS 6.5EG 6.52025-04-07
Cryptographic issue may arise because the access control configuration permits Linux to read key registers in TCSR.
- CVE-2024-57492MEDIUMCVSS 5.5EG 6.02025-03-10
An issue in redoxOS relibc before commit 98aa4ea5 allows a local attacker to cause a denial of service via the round_up_to_page funciton.
- CVE-2024-6354HIGHCVSS 7.2EG 7.22024-06-26
Improper access control in PAM dashboard in Devolutions Remote Desktop Manager 2024.2.11 and earlier on Windows allows an authenticated user to bypass the execute permission via the use of the PAM dashboard.
- CVE-2025-1882MEDIUMCVSS 5.0EG 5.02025-03-03
A vulnerability was found in i-Drive i11 and i12 up to 20250227. It has been rated as critical. Affected by this issue is some unknown functionality of the component Device Setting Handler. The manipulation leads to improper access control…
- CVE-2025-20788MEDIUMCVSS 4.4EG 4.42025-12-02
In GPU pdma, there is a possible memory corruption due to a missing permission check. This could lead to local denial of service with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS101…
- CVE-2025-36194LOWCVSS 2.8EG 2.82026-02-02
IBM PowerVM Hypervisor FW1110.00 through FW1110.03, FW1060.00 through FW1060.51, and FW950.00 through FW950.F0 may expose a limited amount of data to a peer partition in specific shared processor configurations during certain operations.
Map vulnerabilities like CWE-1262 to your infrastructure
EchelonGraph correlates every CVE — across CWE-1262 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →