CWE-264
1,421 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-264page 9 of 29
- CVE-2016-0843HIGHCVSS 8.4EG 8.42016-04-18
The Qualcomm ARM processor performance-event manager in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 allows attackers to gain privileges via a crafted application, aka internal bug 25801197.
- CVE-2016-0844HIGHCVSS 8.4EG 8.42016-04-18
The Qualcomm RF driver in Android 6.x before 2016-04-01 does not properly restrict access to socket ioctl calls, which allows attackers to gain privileges via a crafted application, aka internal bug 26324307.
- CVE-2016-0846HIGHCVSS 8.4EG 8.42016-04-18
libs/binder/IMemory.cpp in the IMemory Native Interface in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 does not properly consider the heap size, which allows attackers to gain privileges via …
- CVE-2016-0847HIGHCVSS 8.4EG 8.42016-04-18
The Telecom Component in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 allows attackers to spoof the originating telephone number of a call via a crafted application, as demonstrated by obtaining Signature or Si…
- CVE-2016-0850HIGHCVSS 8.8EG 8.82016-04-18
The PORCHE_PAIRING_CONFLICT feature in Bluetooth in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 allows remote attackers to bypass intended pairing restrictions via a crafted device, aka inter…
- CVE-2016-0852HIGHCVSS 7.5EG 7.52016-01-15
Advantech WebAccess before 8.1 allows remote attackers to bypass an intended administrative requirement and obtain file or folder access via unspecified vectors.
- CVE-2016-0905MEDIUMCVSS 6.7EG 6.72016-09-21
Avamar Data Store (ADS) and Avamar Virtual Edition (AVE) in EMC Avamar Server before 7.3.0-233 allow local users to obtain root privileges by leveraging admin access and entering a sudo command.
- CVE-2016-0908MEDIUMCVSS 6.7EG 6.72016-06-04
EMC Isilon OneFS 7.1.x before 7.1.1.9 and 7.2.x before 7.2.1.2 allows local users to obtain root shell access by leveraging administrative privileges.
- CVE-2016-0910HIGHCVSS 8.8EG 8.82016-06-10
EMC Data Domain OS 5.5 before 5.5.4.0, 5.6 before 5.6.1.004, and 5.7 before 5.7.2.0 stores session identifiers of GUI users in a world-readable file, which allows local users to hijack arbitrary accounts via unspecified vectors.
- CVE-2016-0911HIGHCVSS 8.2EG 8.22016-06-19
EMC Data Domain OS 5.4 through 5.7 before 5.7.2.0 has a default no_root_squash option for NFS exports, which makes it easier for remote attackers to obtain filesystem access by leveraging client root privileges.
- CVE-2016-0912CRITICALCVSS 9.8EG 9.82016-06-19
EMC Data Domain OS 5.4 through 5.7 before 5.7.2.0 allows remote authenticated users to bypass intended password-change restrictions by leveraging access to (1) a different account with the same role as a target account or (2) an account's …
- CVE-2016-0915HIGHCVSS 8.1EG 8.12016-08-22
The Self-Service Portal in EMC RSA Authentication Manager (AM) Prime Self-Service 3.0 and 3.1 before 3.1 1915.42871 allows remote authenticated users to cause a denial of service (PIN change for an arbitrary user) via a modified token seri…
- CVE-2016-0917CRITICALCVSS 9.8EG 9.82016-09-21
The SMB service in EMC VNXe (VNXe3200 Operating Environment prior to 3.1.5.8711957 and VNXe3100/3150/3300 Operating Environment prior to 2.4.4.22638), VNX1 File OE before 7.1.80.3, VNX2 File OE before 8.1.9.155, and Celerra (all supported …
- CVE-2016-0921MEDIUMCVSS 6.5EG 6.52016-09-21
Avamar Data Store (ADS) and Avamar Virtual Edition (AVE) in EMC Avamar Server before 7.3.0-233 use weak permissions for unspecified directories, which allows local users to obtain root access by replacing a script with a Trojan horse progr…
- CVE-2016-0943HIGHCVSS 8.8EG 8.82016-01-14
Adobe Reader and Acrobat before 11.0.14, Acrobat and Acrobat Reader DC Classic before 15.006.30119, and Acrobat and Acrobat Reader DC Continuous before 15.010.20056 on Windows and OS X mishandle the Global object, which allows attackers to…
- CVE-2016-10010HIGHCVSS 7.0EG 7.02017-01-05
sshd in OpenSSH before 7.4, when privilege separation is not used, creates forwarded Unix-domain sockets as root, which might allow local users to gain privileges via unspecified vectors, related to serverloop.c.
- CVE-2016-10013HIGHCVSS 7.8EG 7.82017-01-26
Xen through 4.8.x allows local 64-bit x86 HVM guest OS users to gain privileges by leveraging mishandling of SYSCALL singlestep during emulation.
- CVE-2016-10031HIGHCVSS 7.5EG 7.52016-12-27
WampServer 3.0.6 installs two services called 'wampapache' and 'wampmysqld' with weak file permissions, running with SYSTEM privileges. This could potentially allow an authorized but non-privileged local user to execute arbitrary code with…
- CVE-2016-10041HIGHCVSS 7.5EG 7.52016-12-25
An issue was discovered in Sprecher Automation SPRECON-E Service Program before 3.43 SP0. Under certain preconditions, it is possible to execute telegram simulation as a non-admin user. As prerequisites, a user must have created an online-…
- CVE-2016-10044HIGHCVSS 7.8EG 7.82017-02-07
The aio_mount function in fs/aio.c in the Linux kernel before 4.7.7 does not properly restrict execute access, which makes it easier for local users to bypass intended SELinux W^X policy restrictions, and consequently gain privileges, via …
- CVE-2016-10072HIGHCVSS 5.3EG 7.52016-12-27
WampServer 3.0.6 has two files called 'wampmanager.exe' and 'unins000.exe' with a weak ACL for Modify. This could potentially allow an authorized but non-privileged local user to execute arbitrary code with elevated privileges on the syste…
- CVE-2016-10086HIGHCVSS 8.1EG 8.12017-01-18
RESTful web services in CA Service Desk Manager 12.9 and CA Service Desk Management 14.1 might allow remote authenticated users to read or modify task information by leveraging incorrect permissions applied to a RESTful request.
- CVE-2016-10089HIGHCVSS 7.8EG 7.82017-02-15
Nagios 4.3.2 and earlier allows local users to gain root privileges via a hard link attack on the Nagios init script file, related to CVE-2016-8641.
- CVE-2016-10116HIGHCVSS 8.1EG 8.12017-01-04
NETGEAR Arlo base stations with firmware 1.7.5_6178 and earlier, Arlo Q devices with firmware 1.8.0_5551 and earlier, and Arlo Q Plus devices with firmware 1.8.1_6094 and earlier use a pattern of adjective, noun, and three-digit number for…
- CVE-2016-10117HIGHCVSS 7.8EG 7.82017-04-13
Firejail does not restrict access to --tmpfs, which allows local users to gain privileges, as demonstrated by mounting over /etc.
- CVE-2016-10118LOWCVSS 3.3EG 3.32017-04-13
Firejail allows local users to truncate /etc/resolv.conf via a chroot command to /.
- CVE-2016-10119HIGHCVSS 7.8EG 7.82017-04-13
Firejail uses 0777 permissions when mounting /tmp, which allows local users to gain privileges.
- CVE-2016-10120HIGHCVSS 7.8EG 7.82017-04-13
Firejail uses 0777 permissions when mounting (1) /dev, (2) /dev/shm, (3) /var/tmp, or (4) /var/lock, which allows local users to gain privileges.
- CVE-2016-10121HIGHCVSS 7.8EG 7.82017-04-13
Firejail uses weak permissions for /dev/shm/firejail and possibly other files, which allows local users to gain privileges.
- CVE-2016-10122HIGHCVSS 7.8EG 7.82017-04-13
Firejail does not properly clean environment variables, which allows local users to gain privileges.
- CVE-2016-10123HIGHCVSS 7.8EG 7.82017-04-13
Firejail allows --chroot when seccomp is not supported, which might allow local users to gain privileges.
- CVE-2016-10126CRITICALCVSS 9.8EG 9.82017-01-10
Splunk Web in Splunk Enterprise 5.0.x before 5.0.17, 6.0.x before 6.0.13, 6.1.x before 6.1.12, 6.2.x before 6.2.12, 6.3.x before 6.3.8, and 6.4.x before 6.4.4 allows remote attackers to conduct HTTP request injection attacks and obtain sen…
- CVE-2016-10150CRITICALCVSS 9.8EG 9.82017-02-06
Use-after-free vulnerability in the kvm_ioctl_create_device function in virt/kvm/kvm_main.c in the Linux kernel before 4.8.13 allows host OS users to cause a denial of service (host OS crash) or possibly gain privileges via crafted ioctl c…
- CVE-2016-10151HIGHCVSS 7.0EG 7.02017-03-01
The hesiod_init function in lib/hesiod.c in Hesiod 3.2.1 compares EUID with UID to determine whether to use configurations from environment variables, which allows local users to gain privileges via the (1) HESIOD_CONFIG or (2) HES_DOMAIN …
- CVE-2016-10152CRITICALCVSS 9.8EG 9.82017-03-28
The read_config_file function in lib/hesiod.c in Hesiod 3.2.1 falls back to the ".athena.mit.edu" default domain when opening the configuration file fails, which allows remote attackers to gain root privileges by poisoning the DNS cache.
- CVE-2016-10156HIGHCVSS 7.8EG 7.82017-01-23
A flaw in systemd v228 in /src/basic/fs-util.c caused world writable suid files to be created when using the systemd timers features, allowing local attackers to escalate their privileges to root. This is fixed in v229.
- CVE-2016-10187MEDIUMCVSS 5.5EG 5.52017-03-16
The E-book viewer in calibre before 2.75 allows remote attackers to read arbitrary files via a crafted epub file with JavaScript.
- CVE-2016-10200HIGHCVSS 7.0EG 7.02017-03-07
Race condition in the L2TPv3 IP Encapsulation feature in the Linux kernel before 4.8.14 allows local users to gain privileges or cause a denial of service (use-after-free) by making multiple bind system calls without properly ascertaining …
- CVE-2016-10225HIGHCVSS 7.8EG 7.82017-03-27
The sunxi-debug driver in Allwinner 3.4 legacy kernel for H3, A83T and H8 devices allows local users to gain root privileges by sending "rootmydevice" to /proc/sunxi_debug/sunxi_debug.
- CVE-2016-10230CRITICALCVSS 9.8EG 9.82018-04-04
A remote code execution vulnerability in the Qualcomm crypto driver. Product: Android. Versions: Android kernel. Android ID: A-34389927. References: QC-CR#1091408.
- CVE-2016-10231HIGHCVSS 7.8EG 7.82018-04-04
An elevation of privilege vulnerability in the Qualcomm sound codec driver. Product: Android. Versions: Android kernel. Android ID: A-33966912. References: QC-CR#1096799.
- CVE-2016-10232HIGHCVSS 7.8EG 7.82018-04-04
An elevation of privilege vulnerability in the Qualcomm video driver. Product: Android. Versions: Android kernel. Android ID: A-34386696. References: QC-CR#1024872.
- CVE-2016-10233CRITICALCVSS 9.8EG 9.82018-04-04
An elevation of privilege vulnerability in the Qualcomm video driver. Product: Android. Versions: Android kernel. Android ID: A-34389926. References: QC-CR#897452.
- CVE-2016-10238HIGHCVSS 7.8EG 7.82017-05-16
In QSEE in all Android releases from CAF using the Linux kernel access control may potentially be bypassed due to a page alignment issue.
- CVE-2016-10274HIGHCVSS 7.8EG 7.82017-05-12
An elevation of privilege vulnerability in the MediaTek touchscreen driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a l…
- CVE-2016-10275HIGHCVSS 7.8EG 7.82017-05-12
An elevation of privilege vulnerability in the Qualcomm bootloader could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local per…
- CVE-2016-10276HIGHCVSS 7.8EG 7.82017-05-12
An elevation of privilege vulnerability in the Qualcomm bootloader could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local per…
- CVE-2016-10277HIGHCVSS 7.8EG 7.82017-05-12
An elevation of privilege vulnerability in the Motorola bootloader could enable a local malicious application to execute arbitrary code within the context of the bootloader. This issue is rated as Critical due to the possibility of a local…
- CVE-2016-10280HIGHCVSS 7.0EG 7.02017-05-12
An elevation of privilege vulnerability in the MediaTek thermal driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromisin…
- CVE-2016-10281HIGHCVSS 7.0EG 7.02017-05-12
An elevation of privilege vulnerability in the MediaTek thermal driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromisin…
Map vulnerabilities like CWE-264 to your infrastructure
EchelonGraph correlates every CVE — across CWE-264 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →