CWE-668— Exposure of Resource to Wrong Sphere
The product exposes a resource to the wrong control sphere, providing unintended actors with inappropriate access to the resource.— MITRE CWE catalog
1,140 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-668page 4 of 23
- CVE-2020-14064MEDIUMCVSS 6.5EG 6.52020-07-15
IceWarp Email Server 12.3.0.1 has Incorrect Access Control for user accounts.
- CVE-2020-14130MEDIUMCVSS 5.3EG 5.32021-09-16
Some js interfaces in the Xiaomi community were exposed, causing sensitive functions to be maliciously called on Xiaomi community app Affected Version <3.0.210809
- CVE-2020-15215MEDIUMCVSS 5.6EG 5.62020-10-06
Electron before versions 11.0.0-beta.6, 10.1.2, 9.3.1 or 8.5.2 is vulnerable to a context isolation bypass. Apps using both `contextIsolation` and `sandbox: true` are affected. Apps using both `contextIsolation` and `nodeIntegrationInSubFr…
- CVE-2020-15264HIGHCVSS 8.0EG 8.02020-10-20
The Boxstarter installer before version 2.13.0 configures C:\ProgramData\Boxstarter to be in the system-wide PATH environment variable. However, this directory is writable by normal, unprivileged users. To exploit the vulnerability, place …
- CVE-2020-15816HIGHCVSS 8.8EG 8.82020-07-17
In Western Digital WD Discovery before 4.0.251.0, a malicious application running with standard user permissions could potentially execute code in the application's process through library injection by using DYLD environment variables.
- CVE-2020-15936MEDIUMCVSS 2.6EG 4.52022-03-01
A improper input validation in Fortinet FortiGate version 6.4.3 and below, version 6.2.5 and below, version 6.0.11 and below, version 5.6.13 and below allows attacker to disclose sensitive information via SNI Client Hello TLS packets.
- CVE-2020-16212MEDIUMCVSS 6.8EG 6.82020-09-11
In Patient Information Center iX (PICiX) Versions B.02, C.02, C.03, the product exposes a resource to the wrong control sphere, providing unintended actors with inappropriate access to the resource. The application on the surveillance stat…
- CVE-2020-16247HIGHCVSS 6.8EG 7.12020-09-18
Philips Clinical Collaboration Platform, Versions 12.2.1 and prior, exposes a resource to the wrong control sphere, providing unintended actors with inappropriate access to the resource.
- CVE-2020-16263CRITICALCVSS 9.1EG 9.12020-10-28
Winston 1.5.4 devices have a CORS configuration that trusts arbitrary origins. This allows requests to be made and viewed by arbitrary origins.
- CVE-2020-16268HIGHCVSS 8.8EG 8.82020-12-29
The MSI installer in 1E Client 4.1.0.267 and 5.0.0.745 allows remote authenticated users and local users to gain elevated privileges via the repair option. This applies to installations that have a TRANSFORM (MST) with the option to disabl…
- CVE-2020-18646HIGHCVSS 7.5EG 7.52021-06-22
Information Disclosure in NoneCMS v1.3 allows remote attackers to obtain sensitive information via the component "/public/index.php".
- CVE-2020-18647HIGHCVSS 7.5EG 7.52021-06-22
Information Disclosure in NoneCMS v1.3 allows remote attackers to obtain sensitive information via the component "/nonecms/vendor".
- CVE-2020-18754HIGHCVSS 7.5EG 7.52021-08-13
An information disclosure vulnerability exists within Dut Computer Control Engineering Co.'s PLC MAC1100.
- CVE-2020-18972MEDIUMCVSS 5.5EG 5.52021-08-25
Exposure of Sensitive Information to an Unauthorized Actor in PoDoFo v0.9.6 allows attackers to obtain sensitive information via 'IsNextToken' in the component 'src/base/PdfToenizer.cpp'.
- CVE-2020-19155HIGHCVSS 8.8EG 8.82021-09-15
Improper Access Control in Jfinal CMS v4.7.1 and earlier allows remote attackers to obtain sensitive information and/or execute arbitrary code via the 'FileManager.rename()' function in the component 'modules/filemanager/FileManagerControl…
- CVE-2020-1945MEDIUMCVSS 6.3EG 6.32020-05-14
Apache Ant 1.1 to 1.9.14 and 1.10.0 to 1.10.7 uses the default temporary directory identified by the Java system property java.io.tmpdir for several tasks and may thus leak sensitive information. The fixcrlf and replaceregexp tasks also co…
- CVE-2020-1981HIGHCVSS 7.0EG 7.02020-03-11
A predictable temporary filename vulnerability in PAN-OS allows local privilege escalation. This issue allows a local attacker who bypassed the restricted shell to execute commands as a low privileged user and gain root access on the PAN-O…
- CVE-2020-20948HIGHCVSS 7.5EG 7.52021-12-27
An arbitrary file download vulnerability in jeecg v3.8 allows attackers to access sensitive files via modification of the "localPath" variable.
- CVE-2020-21356MEDIUMCVSS 5.3EG 5.32021-08-06
An information disclosure vulnerability in upload.php of PopojiCMS 1.2 leads to physical path disclosure of the host when 'name = "file" is deleted during file uploads.
- CVE-2020-21503HIGHCVSS 7.5EG 7.52021-10-05
waimai Super Cms 20150505 has a logic flaw allowing attackers to modify a price, before form submission, by observing data in a packet capture. By setting the index.php?m=gift&a=addsave credit parameter to -1, the product is sold for free.
- CVE-2020-22535MEDIUMCVSS 6.5EG 6.52021-07-09
Incorrect Access Control vulnerability in PbootCMS 2.0.6 via the list parameter in the update function in upgradecontroller.php.
- CVE-2020-22647CRITICALCVSS 9.1EG 9.12023-03-16
An issue found in DepositGame v.1.0 allows an attacker to gain sensitive information via the GetBonusWithdraw and withdraw functions.
- CVE-2020-24511MEDIUMCVSS 6.5EG 6.52021-06-09
Improper isolation of shared resources in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
- CVE-2020-25039HIGHCVSS 8.1EG 8.12020-09-16
Sylabs Singularity 3.2.0 through 3.6.2 has Insecure Permissions on temporary directories used in fakeroot or user namespace container execution.
- CVE-2020-25040HIGHCVSS 8.8EG 8.82020-09-16
Sylabs Singularity through 3.6.2 has Insecure Permissions on temporary directories used in explicit and implicit container build operations, a different vulnerability than CVE-2020-25039.
- CVE-2020-25073MEDIUMCVSS 5.3EG 5.32020-09-02
FreedomBox through 20.13 allows remote attackers to obtain sensitive information from the /server-status page of the Apache HTTP Server, because a connection from the Tor onion service (or from PageKite) is considered a local connection. T…
- CVE-2020-25459HIGHCVSS 7.5EG 7.52022-06-16
An issue was discovered in function sync_tree in hetero_decision_tree_guest.py in WeBank FATE (Federated AI Technology Enabler) 0.1 through 1.4.2 allows attackers to read sensitive information during the training process of machine learnin…
- CVE-2020-26084MEDIUMCVSS 6.5EG 6.52020-11-06
A vulnerability in the REST API of Cisco Edge Fog Fabric could allow an authenticated, remote attacker to access files outside of their authorization sphere on an affected device. The vulnerability is due to incorrect authorization enforce…
- CVE-2020-26086MEDIUMCVSS 4.3EG 4.32020-11-06
A vulnerability in the video endpoint API (xAPI) of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an authenticated, remote attacker to gain access to sensitive information on an affected device. The vulnerability is d…
- CVE-2020-26186MEDIUMCVSS 6.8EG 6.82021-01-08
Dell Inspiron 5675 BIOS versions prior to 1.4.1 contain a UEFI BIOS RuntimeServices overwrite vulnerability. A local attacker with access to system memory may exploit this vulnerability by overwriting the RuntimeServices structure to execu…
- CVE-2020-26261HIGHCVSS 7.9EG 7.92020-12-09
jupyterhub-systemdspawner enables JupyterHub to spawn single-user notebook servers using systemd. In jupyterhub-systemdspawner before version 0.15 user API tokens issued to single-user servers are specified in the environment of systemd un…
- CVE-2020-26272MEDIUMCVSS 5.4EG 5.42021-01-28
The Electron framework lets users write cross-platform desktop applications using JavaScript, HTML and CSS. In versions of Electron IPC prior to 9.4.0, 10.2.0, 11.1.0, and 12.0.0-beta.9, messages sent from the main process to a subframe in…
- CVE-2020-26602HIGHCVSS 7.5EG 7.52020-10-06
An issue was discovered in EthernetNetwork on Samsung mobile devices with O(8.1), P(9.0), Q(10.0), and R(11.0) software. PendingIntent allows sdcard access by an unprivileged process. The Samsung ID is SVE-2020-18392 (October 2020).
- CVE-2020-26650MEDIUMCVSS 5.3EG 5.32020-10-22
AtomXCMS 2.0 is affected by Arbitrary File Read via admin/dump.php
- CVE-2020-26868HIGHCVSS 7.5EG 7.52020-10-12
ARC Informatique PcVue prior to version 12.0.17 is vulnerable to a denial-of-service attack due to the ability of an unauthorized user to modify information used to validate messages sent by legitimate web clients. This issue also affects …
- CVE-2020-27361HIGHCVSS 7.5EG 7.52021-07-01
An issue exists within Akkadian Provisioning Manager 4.50.02 which allows attackers to view sensitive information within the /pme subdirectories.
- CVE-2020-27601LOWCVSS 3.5EG 3.52022-09-29
In BigBlueButton before 2.2.7, lockSettingsProps.disablePrivateChat does not apply to already opened chats. This occurs in bigbluebutton-html5/imports/ui/components/chat/service.js.
- CVE-2020-27872HIGHCVSS 8.8EG 8.82021-02-04
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R7450 1.2.0.62_1.0.1 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within …
- CVE-2020-28012HIGHCVSS 7.8EG 7.82021-05-06
Exim 4 before 4.94.2 allows Exposure of File Descriptor to Unintended Control Sphere because rda_interpret uses a privileged pipe that lacks a close-on-exec flag.
- CVE-2020-28145HIGHCVSS 7.5EG 7.52021-10-12
Arbitrary file deletion vulnerability was discovered in wuzhicms v 4.0.1 via coreframe\app\attachment\admin\index.php, which allows attackers to access sensitive information.
- CVE-2020-29481HIGHCVSS 8.8EG 8.82020-12-15
An issue was discovered in Xen through 4.14.x. Access rights of Xenstore nodes are per domid. Unfortunately, existing granted access rights are not removed when a domain is being destroyed. This means that a new domain created with the sam…
- CVE-2020-3315MEDIUMCVSS 5.3EG 5.32020-05-06
Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could allow an unauthenticated, remote attacker to bypass the configured file policies on an affected system. The vulnerability is due to errors in …
- CVE-2020-35215MEDIUMCVSS 6.5EG 6.52021-12-16
An issue in Atomix v3.1.5 allows attackers to access sensitive information when a malicious Atomix node queries distributed variable primitives which contain the entire primitive lists that ONOS nodes use to share important states.
- CVE-2020-36252MEDIUMCVSS 6.8EG 6.82021-02-19
ownCloud Server 10.x before 10.3.1 allows an attacker, who has one outgoing share from a victim, to access any version of any file by sending a request for a predictable ID number.
- CVE-2020-36319LOWCVSS 3.1EG 3.12021-04-23
Insecure configuration of default ObjectMapper in com.vaadin:flow-server versions 3.0.0 through 3.0.5 (Vaadin 15.0.0 through 15.0.4) may expose sensitive data if the application also uses e.g. @RestController
- CVE-2020-36476HIGHCVSS 7.5EG 7.52021-08-23
An issue was discovered in Mbed TLS before 2.24.0 (and before 2.16.8 LTS and before 2.7.17 LTS). There is missing zeroization of plaintext buffers in mbedtls_ssl_read to erase unused application data from memory.
- CVE-2020-36532MEDIUMCVSS 4.3EG 6.52022-06-07
A vulnerability has been found in Klapp App and classified as problematic. This vulnerability affects unknown code of the component Authorization. The manipulation leads to information disclosure (Credentials). The attack can be initiated …
- CVE-2020-3890MEDIUMCVSS 5.3EG 5.32020-04-01
The issue was addressed with improved deletion. This issue is fixed in iOS 13.4 and iPadOS 13.4. Deleted messages groups may still be suggested as an autocompletion.
- CVE-2020-3917MEDIUMCVSS 5.5EG 5.52020-04-01
This issue was addressed with a new entitlement. This issue is fixed in iOS 13.4 and iPadOS 13.4, tvOS 13.4, watchOS 6.2. An application may be able to use an SSH client provided by private frameworks.
- CVE-2020-4160MEDIUMCVSS 5.9EG 5.92021-11-08
IBM QRadar Network Security 5.4.0 and 5.5.0 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerability to obtain sens…
Map vulnerabilities like CWE-668 to your infrastructure
EchelonGraph correlates every CVE — across CWE-668 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →