CWE-668— Exposure of Resource to Wrong Sphere
The product exposes a resource to the wrong control sphere, providing unintended actors with inappropriate access to the resource.— MITRE CWE catalog
1,140 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-668page 5 of 23
- CVE-2020-4569MEDIUMCVSS 6.5EG 6.52020-07-29
IBM Tivoli Key Lifecycle Manager 3.0.1 and 4.0 uses a protection mechanism that relies on the existence or values of an input, but the input can be modified by an untrusted actor in a way that bypasses the protection mechanism. IBM X-Force…
- CVE-2020-4957MEDIUMCVSS 5.3EG 5.32022-05-17
IBM Security Identity Governance and Intelligence 5.2.6 could disclose sensitive information in URL parameters that could aid in future attacks against the system. IBM X-Force ID: 192208.
- CVE-2020-4970MEDIUMCVSS 5.9EG 5.92022-05-19
IBM Security Identity Governance and Intelligence 5.2.4, 5.2.5, and 5.2.6 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit thi…
- CVE-2020-4989MEDIUMCVSS 4.3EG 4.32022-03-15
IBM Engineering Workflow Management 7.0, 7.0.1, and 7.0.2 and IBM Rational Team Concert 6.0.6 and 6.0.0.1 could allow an authenticated user to obtain sensitive information about build definitions. IBM X-Force ID: 192707.
- CVE-2020-5386HIGHCVSS 7.5EG 7.52020-09-02
Dell EMC ECS, versions prior to 3.5, contains an Exposure of Resource vulnerability. A remote unauthenticated attacker can access the list of DT (Directory Table) objects of all internally running services and gain knowledge of sensitive d…
- CVE-2020-5422MEDIUMCVSS 6.5EG 6.52020-10-02
BOSH System Metrics Server releases prior to 0.1.0 exposed the UAA password as a flag to a process running on the BOSH director. It exposed the password to any user or process with access to the same VM (through ps or looking at process de…
- CVE-2020-5742HIGHCVSS 8.8EG 8.82020-06-15
Improper Access Control in Plex Media Server prior to June 15, 2020 allows any origin to execute cross-origin application requests.
- CVE-2020-5887CRITICALCVSS 9.1EG 9.12020-04-30
On versions 15.1.0-15.1.0.1, 15.0.0-15.0.1.2, and 14.1.0-14.1.2.3, BIG-IP Virtual Edition (VE) may expose a mechanism for remote attackers to access local daemons and bypass port lockdown settings.
- CVE-2020-6442MEDIUMCVSS 4.3EG 4.32020-04-13
Inappropriate implementation in cache in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
- CVE-2020-6490MEDIUMCVSS 4.3EG 4.32020-05-21
Insufficient data validation in loader in Google Chrome prior to 83.0.4103.61 allowed a remote attacker who had been able to write to disk to leak cross-origin data via a crafted HTML page.
- CVE-2020-6774CRITICALCVSS 9.3EG 9.32020-05-27
Improper Access Control in the Kiosk Mode functionality of Bosch Recording Station allows a local unauthenticated attacker to escape from the Kiosk Mode and access the underlying operating system.
- CVE-2020-7912MEDIUMCVSS 5.3EG 5.32020-01-30
In JetBrains YouTrack before 2019.2.59309, SMTP/Jabber settings could be accessed using backups.
- CVE-2020-8121HIGHCVSS 8.1EG 8.12020-02-04
A bug in Nextcloud Server 14.0.4 could expose more data in reshared link shares than intended by the sharer.
- CVE-2020-8449HIGHCVSS 7.5EG 7.52020-02-04
An issue was discovered in Squid before 4.10. Due to incorrect input validation, it can interpret crafted HTTP requests in unexpected ways to access server resources prohibited by earlier security filters.
- CVE-2020-8698MEDIUMCVSS 5.5EG 5.52020-11-12
Improper isolation of shared resources in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
- CVE-2020-9291MEDIUMCVSS 6.3EG 6.32020-06-01
An Insecure Temporary File vulnerability in FortiClient for Windows 6.2.1 and below may allow a local user to gain elevated privileges via exhausting the pool of temporary file names combined with a symbolic link attack.
- CVE-2020-9381HIGHCVSS 7.5EG 7.52020-02-24
controllers/admin.js in Total.js CMS 13 allows remote attackers to execute arbitrary code via a POST to the /admin/api/widgets/ URI. This can be exploited in conjunction with CVE-2019-15954.
- CVE-2021-0232HIGHCVSS 7.4EG 7.42021-04-22
An authentication bypass vulnerability in the Juniper Networks Paragon Active Assurance Control Center may allow an attacker with specific information about the deployment to mimic an already registered Test Agent and access its configurat…
- CVE-2021-0466HIGHCVSS 7.5EG 7.52021-06-11
In startIpClient of ClientModeImpl.java, there is a possible identifier which could be used to track a device. This could lead to remote information disclosure to a proximal attacker, with no additional execution privileges needed. User in…
- CVE-2021-0480MEDIUMCVSS 5.5EG 5.52021-06-11
In createPendingIntent of SnoozeHelper.java, there is a possible broadcast intent containing a sensitive identifier. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed…
- CVE-2021-0542MEDIUMCVSS 5.5EG 5.52021-06-22
In updateNotification of BeamTransferManager.java, there is a missing permission check. This could lead to local information disclosure of paired Bluetooth addresses with no additional execution privileges needed. User interaction is neede…
- CVE-2021-0552MEDIUMCVSS 5.5EG 5.52021-06-22
In getEndItemSliceAction of MediaOutputSlice.java, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed …
- CVE-2021-0588MEDIUMCVSS 5.5EG 5.52021-07-14
In processInboundMessage of MceStateMachine.java, there is a possible SMS disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not…
- CVE-2021-0734MEDIUMCVSS 5.5EG 5.52022-08-11
In Settings, there is a possible way to determine whether an app is installed without query permissions, due to side channel information disclosure. This could lead to local information disclosure of an installed package, without proper qu…
- CVE-2021-0966MEDIUMCVSS 5.5EG 5.52021-12-15
In code generated by BuildParcelFields of generate_cpp.cpp, there is a possible way for a crafted parcelable to reveal uninitialized memory of a target process due to uninitialized data. This could lead to local information disclosure acro…
- CVE-2021-0975MEDIUMCVSS 5.5EG 5.52022-08-11
In USB Manager, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information disclosure of installed packages with no addition…
- CVE-2021-0978LOWCVSS 3.3EG 3.32021-12-15
In getSerialForPackage of DeviceIdentifiersPolicyService.java, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information di…
- CVE-2021-0982LOWCVSS 3.3EG 3.32021-12-15
In getOrganizationNameForUser of DevicePolicyManagerService.java, there is a possible organization name disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution privileges n…
- CVE-2021-0986MEDIUMCVSS 5.5EG 5.52021-12-15
In hasGrantedPolicy of DevicePolicyManagerService.java, there is a possible information disclosure about the device owner, profile owner, or device admin due to a logic error in the code. This could lead to local information disclosure wit…
- CVE-2021-0994LOWCVSS 3.3EG 3.32021-12-15
In requestRouteToHostAddress of ConnectivityService.java, there is a possible way to determine whether an app is installed, without query permissions, due to a missing permission check. This could lead to local information disclosure with …
- CVE-2021-1037MEDIUMCVSS 5.3EG 5.32022-01-14
The broadcast that DevicePickerFragment sends when a new device is paired doesn't have any permission checks, so any app can register to listen for it. This lets apps keep track of what devices are paired without requesting BLUETOOTH permi…
- CVE-2021-1045HIGHCVSS 7.5EG 7.52021-12-15
Product: AndroidVersions: Android kernelAndroid ID: A-195580473References: N/A
- CVE-2021-1073HIGHCVSS 8.3EG 8.32021-06-25
NVIDIA GeForce Experience, all versions prior to 3.23, contains a vulnerability in the login flow when a user tries to log in by using a browser, while, at the same time, any other web page is loaded in other tabs of the same browser. In t…
- CVE-2021-1423MEDIUMCVSS 4.4EG 4.42021-03-24
A vulnerability in the implementation of a CLI command in Cisco Aironet Access Points (AP) could allow an authenticated, local attacker to overwrite files in the flash memory of the device. This vulnerability is due to insufficient input v…
- CVE-2021-1438MEDIUMCVSS 5.5EG 5.52021-05-06
A vulnerability in Cisco Wide Area Application Services (WAAS) Software could allow an authenticated, local attacker to gain access to sensitive information on an affected device. The vulnerability is due to improper input validation and a…
- CVE-2021-1807MEDIUMCVSS 5.5EG 5.52021-09-08
A validation issue was addressed with improved input sanitization. This issue is fixed in iOS 14.5 and iPadOS 14.5, watchOS 7.4. A local user may be able to write arbitrary files.
- CVE-2021-1820MEDIUMCVSS 6.5EG 6.52021-09-08
A memory initialization issue was addressed with improved memory handling. This issue is fixed in macOS Big Sur 11.3, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5. Processing maliciously crafted web content may result in the disclosure…
- CVE-2021-1822MEDIUMCVSS 5.5EG 5.52021-09-08
A logic issue was addressed with improved restrictions. This issue is fixed in iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5. A local user may be able to modify protected parts of the file system.
- CVE-2021-1824MEDIUMCVSS 4.4EG 4.42021-09-08
This issue was addressed with improved entitlements. This issue is fixed in macOS Big Sur 11.3, Security Update 2021-002 Catalina. A malicious application with root privileges may be able to access private information.
- CVE-2021-1861MEDIUMCVSS 4.3EG 4.32021-09-08
An issue existed in determining cache occupancy. The issue was addressed through improved logic. This issue is fixed in macOS Big Sur 11.3. A malicious website may be able to track users by setting state in a cache.
- CVE-2021-1904MEDIUMCVSS 6.2EG 6.22021-09-08
Child process can leak information from parent process due to numeric pids are getting compared and these pid can be reused in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT…
- CVE-2021-1918MEDIUMCVSS 6.5EG 6.52022-01-03
Improper handling of resource allocation in virtual machines can lead to information exposure in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile
- CVE-2021-1929MEDIUMCVSS 6.2EG 6.22021-09-08
Lack of strict validation of bootmode can lead to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
- CVE-2021-1968MEDIUMCVSS 6.2EG 6.22021-10-20
Improper validation of kernel buffer address while copying information back to user buffer can lead to kernel memory information exposure to user space in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial …
- CVE-2021-1969MEDIUMCVSS 6.2EG 6.22021-10-20
Improper validation of kernel buffer address while copying information back to user buffer can lead to kernel memory information exposure to user space in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial …
- CVE-2021-20050HIGHCVSS 7.5EG 7.52021-12-23
An Improper Access Control Vulnerability in the SMA100 series leads to multiple restricted management APIs being accessible without a user login, potentially exposing configuration meta-data.
- CVE-2021-20123CRITICALCVSS 7.5EG 9.0⚠ KEV2021-10-13
A local file inclusion vulnerability exists in Draytek VigorConnect 1.6.0-B3 in the file download functionality of the DownloadFileServlet endpoint. An unauthenticated attacker could leverage this vulnerability to download arbitrary files …
- CVE-2021-20124CRITICALCVSS 7.5EG 9.0⚠ KEV2021-10-13
A local file inclusion vulnerability exists in Draytek VigorConnect 1.6.0-B3 in the file download functionality of the WebServlet endpoint. An unauthenticated attacker could leverage this vulnerability to download arbitrary files from the …
- CVE-2021-20355MEDIUMCVSS 5.3EG 5.32022-06-24
IBM Jazz Team Server 6.0.6, 6.0.6.1, 7.0, 7.0.1, and 7.0.2 could allow a remote attacker to obtain sensitive information, caused by the failure to set the HTTPOnly flag. A remote attacker could exploit this vulnerability to obtain sensitiv…
- CVE-2021-20373HIGHCVSS 7.5EG 7.52021-12-09
IBM Db2 9.7, 10.1, 10.5, 11.1, and 11.5 may be vulnerable to an Information Disclosure when using the LOAD utility as under certain circumstances the LOAD utility does not enforce directory restrictions. IBM X-Force ID: 199521.
Map vulnerabilities like CWE-668 to your infrastructure
EchelonGraph correlates every CVE — across CWE-668 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →