CWE-668— Exposure of Resource to Wrong Sphere
The product exposes a resource to the wrong control sphere, providing unintended actors with inappropriate access to the resource.— MITRE CWE catalog
1,140 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-668page 9 of 23
- CVE-2021-35302MEDIUMCVSS 5.3EG 5.32021-06-28
Incorrect Access Control for linked Tickets in Zammad 1.0.x up to 4.0.0 allows remote attackers to obtain sensitive information.
- CVE-2021-3554CRITICALCVSS 9.0EG 10.02021-11-24
Improper Access Control vulnerability in the patchesUpdate API as implemented in Bitdefender Endpoint Security Tools for Linux as a relay role allows an attacker to manipulate the remote address used for pulling patches. This issue affects…
- CVE-2021-35958CRITICALCVSS 9.1EG 9.12021-06-30
TensorFlow through 2.5.0 allows attackers to overwrite arbitrary files via a crafted archive when tf.keras.utils.get_file is used with extract=True. NOTE: the vendor's position is that tf.keras.utils.get_file is not intended for untrusted …
- CVE-2021-36002HIGHCVSS 5.0EG 7.32021-09-01
Adobe Captivate version 11.5.5 (and earlier) is affected by an Creation of Temporary File In Directory With Incorrect Permissions vulnerability that could result in privilege escalation in the context of the current user. The attacker must…
- CVE-2021-36192MEDIUMCVSS 5.2EG 5.22021-11-03
An exposure of sensitive information to an unauthorized actor [CWE-200] vulnerability in FortiManager 7.0.1 and below, 6.4.6 and below, 6.2.x, 6.0.x, 5.6.0 may allow a FortiGate user to see scripts from other ADOMS.
- CVE-2021-36198HIGHCVSS 8.3EG 8.32021-12-06
Successful exploitation of this vulnerability could allow an unauthorized user to access sensitive data.
- CVE-2021-36319LOWCVSS 3.3EG 3.32021-11-20
Dell Networking OS10 versions 10.4.3.x, 10.5.0.x and 10.5.1.x contain an information exposure vulnerability. A low privileged authenticated malicious user can gain access to SNMP authentication failure messages.
- CVE-2021-36710HIGHCVSS 8.8EG 8.82022-06-08
ToaruOS 1.99.2 is affected by incorrect access control via the kernel. Improper MMU management and having a low GDT address allows it to be mapped in userland. A call gate can then be written to escalate to CPL 0.
- CVE-2021-36723HIGHCVSS 6.1EG 7.52021-12-29
Emuse - eServices / eNvoice Exposure Of Private Personal Information due to lack of identification mechanisms and predictable IDs an attacker can scrape all the files on the service.
- CVE-2021-36791MEDIUMCVSS 5.3EG 5.32021-08-13
The dated_news (aka Dated News) extension through 5.1.1 for TYPO3 allows Information Disclosure of application registration data.
- CVE-2021-36917HIGHCVSS 6.5EG 7.52021-11-24
WordPress Hide My WP plugin (versions <= 6.2.3) can be deactivated by any unauthenticated user. It is possible to retrieve a reset token which can then be used to deactivate the plugin.
- CVE-2021-3709MEDIUMCVSS 6.5EG 6.52021-10-01
Function check_attachment_for_errors() in file data/general-hooks/ubuntu.py could be tricked into exposing private data via a constructed crash file. This issue affects: apport 2.14.1 versions prior to 2.14.1-0ubuntu3.29+esm8; 2.20.1 versi…
- CVE-2021-37112MEDIUMCVSS 5.3EG 5.32022-01-03
Hisuite module has a External Control of System or Configuration Setting vulnerability.Successful exploitation of this vulnerability may lead to Firmware leak.
- CVE-2021-37133HIGHCVSS 7.5EG 7.52022-01-03
There is an Unauthorized file access vulnerability in Smartphones.Successful exploitation of this vulnerability may affect service confidentiality.
- CVE-2021-37326MEDIUMCVSS 5.3EG 5.32021-08-15
NetSarang Xshell 7 before Build 0077 includes unintended code strings in paste operations.
- CVE-2021-37601HIGHCVSS 7.5EG 7.52021-07-30
muc.lib.lua in Prosody 0.11.0 through 0.11.9 allows remote attackers to obtain sensitive information (list of admins, members, owners, and banned entities of a Multi-User chat room) in some common configurations.
- CVE-2021-37704MEDIUMCVSS 5.4EG 5.42021-08-12
PhpFastCache is a high-performance backend cache system (packagist package phpfastcache/phpfastcache). In versions before 6.1.5, 7.1.2, and 8.0.7 the `phpinfo()` can be exposed if the `/vendor` is not protected from public access. This is …
- CVE-2021-37734MEDIUMCVSS 6.5EG 6.52021-10-12
A remote unauthorized read access to files vulnerability was discovered in Aruba Instant version(s): 6.4.x.x: 6.4.4.8-4.2.4.18 and below; Aruba Instant 6.5.x.x: 6.5.4.19 and below; Aruba Instant 8.5.x.x: 8.5.0.12 and below; Aruba Instant 8…
- CVE-2021-37965MEDIUMCVSS 4.3EG 4.32021-10-08
Inappropriate implementation in Background Fetch API in Google Chrome prior to 94.0.4606.54 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
- CVE-2021-37967MEDIUMCVSS 4.3EG 4.32021-10-08
Inappropriate implementation in Background Fetch API in Google Chrome prior to 94.0.4606.54 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page.
- CVE-2021-37968MEDIUMCVSS 4.3EG 4.32021-10-08
Inappropriate implementation in Background Fetch API in Google Chrome prior to 94.0.4606.54 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
- CVE-2021-38004MEDIUMCVSS 4.3EG 4.32021-11-23
Insufficient policy enforcement in Autofill in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
- CVE-2021-38009MEDIUMCVSS 6.5EG 6.52021-12-23
Inappropriate implementation in cache in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
- CVE-2021-38130MEDIUMCVSS 6.5EG 6.52022-02-04
A potential Information leakage vulnerability has been identified in versions of Micro Focus Voltage SecureMail Mail Relay prior to 7.3.0.1. The vulnerability could be exploited to create an information leakage attack.
- CVE-2021-38376MEDIUMCVSS 5.3EG 5.32021-11-22
OX App Suite through 7.10.5 has Incorrect Access Control for retrieval of session information via the rampup action of the login API call.
- CVE-2021-38378MEDIUMCVSS 4.3EG 4.32021-11-22
OX App Suite 7.10.5 allows Information Exposure because a caching mechanism can caused a Modified By response to show a person's name.
- CVE-2021-38505MEDIUMCVSS 6.5EG 6.52021-12-08
Microsoft introduced a new feature in Windows 10 known as Cloud Clipboard which, if enabled, will record data copied to the clipboard to the cloud, and make it available on other computers in certain scenarios. Applications that wish to pr…
- CVE-2021-38587HIGHCVSS 7.5EG 7.52021-08-11
In cPanel before 96.0.13, scripts/fix-cpanel-perl mishandles the creation of temporary files (SEC-586).
- CVE-2021-3859HIGHCVSS 7.5EG 7.52022-08-26
A flaw was found in Undertow that tripped the client-side invocation timeout with certain calls made over HTTP2. This flaw allows an attacker to carry out denial of service attacks.
- CVE-2021-38712HIGHCVSS 7.5EG 7.52021-08-16
OneNav 0.9.12 allows Information Disclosure of the onenav.db3 contents. NOTE: the vendor's recommended solution is to block the access via an NGINX configuration file.
- CVE-2021-38874MEDIUMCVSS 4.3EG 4.32022-04-27
IBM QRadar SIEM 7.3, 7.4, and 7.5 allows for users to access information across tenant and domain boundaries in some situations. IBM X-Force ID: 208397.
- CVE-2021-38879MEDIUMCVSS 5.3EG 5.32022-06-24
IBM Jazz Team Server 6.0.6, 6.0.6.1, 7.0, 7.0.1, and 7.0.2 could allow a remote attacker to obtain sensitive information, caused by the failure to set the HTTPOnly flag. A remote attacker could exploit this vulnerability to obtain sensitiv…
- CVE-2021-38904MEDIUMCVSS 6.5EG 6.52022-04-22
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7 could allow a remote attacker to obtain credentials from a user's browser via incorrect autocomplete settings. IBM X-Force ID: 209693.
- CVE-2021-38905MEDIUMCVSS 4.3EG 4.32022-04-22
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7 could allow an authenticated user to view report pages that they should not have access to. IBM X-Force ID: 209697.
- CVE-2021-38924HIGHCVSS 7.5EG 7.52022-09-14
IBM Maximo Asset Management 7.6.1.1 and 7.6.1.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the…
- CVE-2021-38931MEDIUMCVSS 6.5EG 6.52021-12-09
IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.1, and 11.5 is vulnerable to an information disclosure as a result of a connected user having indirect read access to a table where they are not authorized to select from…
- CVE-2021-39045MEDIUMCVSS 5.5EG 5.52022-09-01
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 could allow a local attacker to obtain information due to the autocomplete feature on password input fields. IBM X-Force ID: 214345.
- CVE-2021-39127MEDIUMCVSS 5.3EG 5.32021-10-21
Affected versions of Atlassian Jira Server and Data Center allow anonymous remote attackers to the query component JQL endpoint via a Broken Access Control vulnerability (BAC) vulnerability. The affected versions are before version 8.5.10,…
- CVE-2021-39184MEDIUMCVSS 6.8EG 6.82021-10-12
Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. A vulnerability in versions prior to 11.5.0, 12.1.0, and 13.3.0 allows a sandboxed renderer to request a "thumbnail" image of an arbitr…
- CVE-2021-39212MEDIUMCVSS 4.4EG 4.42021-09-13
ImageMagick is free software delivered as a ready-to-run binary distribution or as source code that you may use, copy, modify, and distribute in both open and proprietary applications. In affected versions and in certain cases, Postscript …
- CVE-2021-39628LOWCVSS 3.3EG 3.32022-01-14
In StatusBar.java, there is a possible disclosure of notification content on the lockscreen due to a logic error in the code. This could lead to local information disclosure with no additional execution privileges needed. User interaction …
- CVE-2021-39631MEDIUMCVSS 5.5EG 5.52022-02-11
In clear_data_dlg_text of strings.xml, there is a possible situation when "Clear storage" functionality sets up the wrong security/privacy expectations due to a misleading message. This could lead to local information disclosure with no ad…
- CVE-2021-39633MEDIUMCVSS 5.5EG 5.52022-01-14
In gre_handle_offloads of ip_gre.c, there is a possible page fault due to an invalid memory access. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploita…
- CVE-2021-39646HIGHCVSS 7.5EG 7.52021-12-15
Product: AndroidVersions: Android kernelAndroid ID: A-201537251References: N/A
- CVE-2021-39648MEDIUMCVSS 4.1EG 4.12021-12-15
In gadget_dev_desc_UDC_show of configfs.c, there is a possible disclosure of kernel heap memory due to a race condition. This could lead to local information disclosure with System execution privileges needed. User interaction is not neede…
- CVE-2021-39715MEDIUMCVSS 4.4EG 4.42022-03-16
In __show_regs of process.c, there is a possible leak of kernel memory and addresses due to log information disclosure. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed…
- CVE-2021-39757MEDIUMCVSS 5.5EG 5.52022-03-30
In PermissionController, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product: …
- CVE-2021-39777MEDIUMCVSS 5.5EG 5.52022-03-30
In Telephony, there is a possible way to determine whether an app is installed, without query permissions, due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. U…
- CVE-2021-39805MEDIUMCVSS 6.5EG 6.52022-04-12
In l2cble_process_sig_cmd of l2c_ble.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure through Bluetooth with no additional execution privileges needed. User interact…
- CVE-2021-39866MEDIUMCVSS 5.4EG 5.42021-10-05
A business logic error in the project deletion process in GitLab 13.6 and later allows persistent access via project access tokens.
Map vulnerabilities like CWE-668 to your infrastructure
EchelonGraph correlates every CVE — across CWE-668 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →