CWE-668— Exposure of Resource to Wrong Sphere
The product exposes a resource to the wrong control sphere, providing unintended actors with inappropriate access to the resource.— MITRE CWE catalog
1,140 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-668page 11 of 23
- CVE-2021-43066HIGHCVSS 8.4EG 8.42022-05-11
A external control of file name or path in Fortinet FortiClientWindows version 7.0.2 and below, version 6.4.6 and below, version 6.2.9 and below, version 6.0.10 and below allows attacker to escalate privilege via the MSI installer.
- CVE-2021-43129MEDIUMCVSS 6.5EG 6.52022-04-19
A bypass exists for Desire2Learn/D2L Brightspace’s “Disable Right Click” option in the quizzing feature, which allows a quiz-taker to access print and copy functionality via the browser’s right click menu even when “Disable Right…
- CVE-2021-43196HIGHCVSS 7.5EG 7.52021-11-09
In JetBrains TeamCity before 2021.1, information disclosure via the Docker Registry connection dialog is possible.
- CVE-2021-43216MEDIUMCVSS 6.5EG 6.52021-12-15
Microsoft Local Security Authority (LSA) Server Information Disclosure Vulnerability
- CVE-2021-43222HIGHCVSS 7.5EG 7.52021-12-15
Microsoft Message Queuing Information Disclosure Vulnerability
- CVE-2021-43224MEDIUMCVSS 5.5EG 5.52021-12-15
Windows Common Log File System Driver Information Disclosure Vulnerability
- CVE-2021-43227MEDIUMCVSS 5.5EG 5.52021-12-15
Storage Spaces Controller Information Disclosure Vulnerability
- CVE-2021-43235MEDIUMCVSS 5.5EG 5.52021-12-15
Storage Spaces Controller Information Disclosure Vulnerability
- CVE-2021-43536MEDIUMCVSS 6.5EG 6.52021-12-08
Under certain circumstances, asynchronous functions could have caused a navigation to fail but expose the target URL. This vulnerability affects Thunderbird < 91.4.0, Firefox ESR < 91.4.0, and Firefox < 95.
- CVE-2021-43560MEDIUMCVSS 5.3EG 5.32021-11-22
A flaw was found in Moodle in versions 3.11 to 3.11.3, 3.10 to 3.10.7, 3.9 to 3.9.10 and earlier unsupported versions. Insufficient capability checks made it possible to fetch other users' calendar action events.
- CVE-2021-43674CRITICALCVSS 9.8EG 9.82021-12-03
ThinkUp 2.0-beta.10 is affected by a path manipulation vulnerability in Smarty.class.php. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
- CVE-2021-43888HIGHCVSS 7.5EG 7.52021-12-15
Microsoft Defender for IoT Information Disclosure Vulnerability
- CVE-2021-43893HIGHCVSS 7.5EG 7.52021-12-15
Windows Encrypting File System (EFS) Elevation of Privilege Vulnerability
- CVE-2021-43955MEDIUMCVSS 4.3EG 4.32022-03-16
The /rest-service-fecru/server-v1 resource in Fisheye and Crucible before version 4.8.9 allowed authenticated remote attackers to obtain information about installation directories via information disclosure vulnerability.
- CVE-2021-44049HIGHCVSS 7.8EG 7.82022-01-15
CyberArk Endpoint Privilege Manager (EPM) through 11.5.3.328 before 2021-12-20 allows a local user to gain elevated privileges via a Trojan horse Procmon64.exe in the user's Temp directory.
- CVE-2021-44225MEDIUMCVSS 5.4EG 5.42021-11-26
In Keepalived through 2.2.4, the D-Bus policy does not sufficiently restrict the message destination, allowing any user to inspect and manipulate any property. This leads to access-control bypass in some situations in which an unrelated D-…
- CVE-2021-44522HIGHCVSS 7.5EG 7.52021-12-14
A vulnerability has been identified in SiPass integrated V2.76 (All versions), SiPass integrated V2.80 (All versions), SiPass integrated V2.85 (All versions), Siveillance Identity V1.5 (All versions), Siveillance Identity V1.6 (All version…
- CVE-2021-44523CRITICALCVSS 9.1EG 9.12021-12-14
A vulnerability has been identified in SiPass integrated V2.76 (All versions), SiPass integrated V2.80 (All versions), SiPass integrated V2.85 (All versions), Siveillance Identity V1.5 (All versions), Siveillance Identity V1.6 (All version…
- CVE-2021-44524CRITICALCVSS 9.8EG 9.82021-12-14
A vulnerability has been identified in SiPass integrated V2.76 (All versions), SiPass integrated V2.80 (All versions), SiPass integrated V2.85 (All versions), Siveillance Identity V1.5 (All versions), Siveillance Identity V1.6 (All version…
- CVE-2021-44525CRITICALCVSS 9.8EG 9.82021-12-20
Zoho ManageEngine PAM360 before build 5303 allows attackers to modify a few aspects of application state because of a filter bypass in which authentication is not required.
- CVE-2021-44676CRITICALCVSS 9.8EG 9.82021-12-20
Zoho ManageEngine Access Manager Plus before 4203 allows anyone to view a few data elements (e.g., access control details) and modify a few aspects of the application state.
- CVE-2021-44717MEDIUMCVSS 4.8EG 4.82022-01-01
Go before 1.16.12 and 1.17.x before 1.17.5 on UNIX allows write operations to an unintended file or unintended network connection as a consequence of erroneous closing of file descriptor 0 after file-descriptor exhaustion.
- CVE-2021-44746MEDIUMCVSS 5.3EG 5.32022-02-01
UNIVERGE DT 820 V3.2.7.0 and prior, UNIVERGE DT 830 V5.2.7.0 and prior, UNIVERGE DT 930 V2.4.0.0 and prior, IP Phone Manager V8.9.1 and prior, Data Maintenance Tool for DT900 Series V5.3.0.0 and prior, Data Maintenance Tool for DT800 Serie…
- CVE-2021-44837MEDIUMCVSS 4.3EG 4.32022-01-19
An issue was discovered in Delta RM 1.2. It is possible for an unprivileged user to access the same information as an admin user regarding the risk creation information in the /risque/administration/referentiel/json/create/categorie endpoi…
- CVE-2021-44838MEDIUMCVSS 4.3EG 4.32022-01-18
An issue was discovered in Delta RM 1.2. Using the /risque/risque/ajax-details endpoint, with a POST request indicating the risk to access with the id parameter, it is possible for users to access risks of other companies.
- CVE-2021-44852HIGHCVSS 7.8EG 7.82022-01-01
An issue was discovered in BS_RCIO64.sys in Biostar RACING GT Evo 2.1.1905.1700. A low-integrity process can open the driver's device object and issue IOCTLs to read or write to arbitrary physical memory locations (or call an arbitrary add…
- CVE-2021-44854MEDIUMCVSS 5.3EG 5.32022-12-26
An issue was discovered in MediaWiki before 1.35.5, 1.36.x before 1.36.3, and 1.37.x before 1.37.1. The REST API publicly caches results from private wikis.
- CVE-2021-44886MEDIUMCVSS 5.3EG 5.32022-02-04
In Zammad 5.0.2, agents can configure "out of office" periods and substitute persons. If the substitute persons didn't have the same permissions as the original agent, they could receive ticket notifications for tickets that they have no a…
- CVE-2021-45097MEDIUMCVSS 2.9EG 5.52021-12-16
KNIME Server before 4.12.6 and 4.13.x before 4.13.4 (when installed in unattended mode) keeps the administrator's password in a file without appropriate file access controls, allowing all local users to read its content.
- CVE-2021-45101HIGHCVSS 8.1EG 8.12021-12-16
An issue was discovered in HTCondor before 8.8.15, 9.0.x before 9.0.4, and 9.1.x before 9.1.2. Using standard command-line tools, a user with only READ access to an HTCondor SchedD or Collector daemon can discover secrets that could allow …
- CVE-2021-45402MEDIUMCVSS 5.5EG 5.52022-02-11
The check_alu_op() function in kernel/bpf/verifier.c in the Linux kernel through v5.16-rc5 did not properly update bounds while handling the mov32 instruction, which allows local users to obtain potentially sensitive address information, a…
- CVE-2021-45420CRITICALCVSS 9.8EG 9.82022-02-14
Emerson Dixell XWEB-500 products are affected by arbitrary file write vulnerability in /cgi-bin/logo_extra_upload.cgi, /cgi-bin/cal_save.cgi, and /cgi-bin/lo_utils.cgi. An attacker will be able to write any file on the target system withou…
- CVE-2021-45421HIGHCVSS 7.5EG 7.52022-02-14
Emerson Dixell XWEB-500 products are affected by information disclosure via directory listing. A potential attacker can use this misconfiguration to access all the files in the remote directories. Note: the product has not been supported s…
- CVE-2021-45446HIGHCVSS 5.0EG 7.52022-11-02
A vulnerability in Hitachi Vantara Pentaho Business Analytics Server versions before 9.2.0.2 and 8.3.0.25 does not cascade the hidden property to the children of the Home folder. This directory listing provides an attacker with the co…
- CVE-2021-45454HIGHCVSS 7.5EG 7.52022-08-17
Ampere Altra before SRP 1.08b and Altra Max before SRP 2.05 allow information disclosure of power telemetry via HWmon.
- CVE-2021-45494HIGHCVSS 8.4EG 8.42021-12-26
Certain NETGEAR devices are affected by an attacker's ability to read arbitrary files. This affects RBK352 before 4.4.0.10, RBR350 before 4.4.0.10, and RBS350 before 4.4.0.10.
- CVE-2021-45708HIGHCVSS 7.5EG 7.52021-12-27
An issue was discovered in the abomonation crate through 2021-10-17 for Rust. Because transmute operations are insufficiently constrained, there can be an information leak or ASLR bypass.
- CVE-2021-46354HIGHCVSS 7.5EG 7.52022-02-09
Thinfinity VirtualUI 2.1.28.0, 2.1.32.1 and 2.5.26.2, fixed in version 3.0 is affected by an information disclosure vulnerability in the parameter "Addr" in cmd site. The ability to send requests to other systems can allow the vulnerable s…
- CVE-2021-46687MEDIUMCVSS 4.9EG 4.92022-07-06
JFrog Artifactory prior to version 7.31.10 and 6.23.38 is vulnerable to Sensitive Data Exposure through the Project Administrator REST API. This issue affects: JFrog JFrog Artifactory JFrog Artifactory versions before 7.31.10 versions prio…
- CVE-2021-46744MEDIUMCVSS 6.5EG 6.52022-05-11
An attacker with access to a malicious hypervisor may be able to infer data values used in a SEV guest on AMD CPUs by monitoring ciphertext values over time.
- CVE-2021-46906MEDIUMCVSS 5.5EG 5.52024-02-26
In the Linux kernel, the following vulnerability has been resolved: HID: usbhid: fix info leak in hid_submit_ctrl In hid_submit_ctrl(), the way of calculating the report length doesn't take into account that report->size can be zero. Whe…
- CVE-2021-46917MEDIUMCVSS 5.5EG 5.52024-02-27
In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: fix wq cleanup of WQCFG registers A pre-release silicon erratum workaround where wq reset does not clear WQCFG registers was leaked into upstream code. …
- CVE-2021-46921MEDIUMCVSS 5.5EG 5.52024-02-27
In the Linux kernel, the following vulnerability has been resolved: locking/qrwlock: Fix ordering in queued_write_lock_slowpath() While this code is executed with the wait_lock held, a reader can acquire the lock without holding wait_loc…
- CVE-2021-46923MEDIUMCVSS 5.5EG 5.52024-02-27
In the Linux kernel, the following vulnerability has been resolved: fs/mount_setattr: always cleanup mount_kattr Make sure that finish_mount_kattr() is called after mount_kattr was succesfully built in both the success and failure case t…
- CVE-2021-46935MEDIUMCVSS 5.5EG 5.52024-02-27
In the Linux kernel, the following vulnerability has been resolved: binder: fix async_free_space accounting for empty parcels In 4.13, commit 74310e06be4d ("android: binder: Move buffer out of area shared with user space") fixed a kernel…
- CVE-2021-46937MEDIUMCVSS 5.5EG 5.52024-02-27
In the Linux kernel, the following vulnerability has been resolved: mm/damon/dbgfs: fix 'struct pid' leaks in 'dbgfs_target_ids_write()' DAMON debugfs interface increases the reference counts of 'struct pid's for targets from the 'target…
- CVE-2021-47401HIGHCVSS 5.5EG 7.12024-05-21
In the Linux kernel, the following vulnerability has been resolved: ipack: ipoctal: fix stack information leak The tty driver name is used also after registering the driver and must specifically not be allocated on the stack to avoid lea…
- CVE-2022-0005LOWCVSS 2.4EG 2.42022-05-12
Sensitive information accessible by physical probing of JTAG interface for some Intel(R) Processors with SGX may allow an unprivileged user to potentially enable information disclosure via physical access.
- CVE-2022-0117MEDIUMCVSS 6.5EG 6.52022-02-12
Policy bypass in Blink in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
- CVE-2022-0315HIGHCVSS 7.5EG 7.52022-03-24
Insecure Temporary File in GitHub repository horovod/horovod prior to 0.24.0.
Map vulnerabilities like CWE-668 to your infrastructure
EchelonGraph correlates every CVE — across CWE-668 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →