Skip to main content

CWE archive

CWE-306 CVEs

Programmatic archive

2,880 CVEs tagged with CWE-3061,083 Critical, 1,120 High, 626 Medium, 51 Low, 0 Unrated.

CVE-2018-4834

Published Jan 24, 2018

A vulnerability has been identified in Desigo PXC00-E.D V4.10 (All versions < V4.10.111), Desigo PXC00-E.D V5.00 (All versions < V5.0.171), Desigo PXC00-E.D V5.10 (All versions <…

CVSS 9.8 · Critical

CVE-2018-2360

Published Jan 9, 2018

SAP Startup Service, SAP KERNEL 7.45, 7.49, and 7.52, is missing an authentication check for functionalities that require user identity and cause consumption of file system storag…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2017-18001

Published Dec 31, 2017

Trustwave Secure Web Gateway (SWG) through 11.8.0.27 allows remote attackers to append an arbitrary public key to the device's SSH Authorized Keys data, and consequently obtain re…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-3184

Published Dec 16, 2017

ACTi cameras including the D, B, I, and E series using firmware version A1D-500-V6.11.31-AC fail to properly restrict access to the factory reset page. An unauthenticated, remote…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-12155

Published Dec 12, 2017

A resource-permission flaw was found in the openstack-tripleo-heat-templates package where ceph.client.openstack.keyring is created as world-readable. A local attacker with access…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-8156

Published Nov 22, 2017

The outdoor unit of Customer Premise Equipment (CPE) product B2338-168 V100R001C00 has a no authentication vulnerability on the serial port. An attacker can access the serial port…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-2708

Published Nov 22, 2017

The 'Find Phone' function in Nice smartphones with software versions earlier before Nice-AL00C00B0135 has an authentication bypass vulnerability. An unauthenticated attacker may w…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-1523

Published Oct 24, 2017

IBM InfoSphere Master Data Management - Collaborative Edition 11.5 could allow an unauthorized user to download reports without authentication. IBM X-Force ID: 129892.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-10271

Published Oct 19, 2017

Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS Security). Supported versions that are affected are 10.3.6.0.0, 12.1.3.0.0, 12…

CVSS 7.5 · High
evidence mentions
45
Buzz score
72.5
KEV listed
Vendor/product tagsBeta · best-effort

CVE-2017-12822

Published Oct 4, 2017

Remote enabling and disabling admin interface in Gemalto's HASP SRM, Sentinel HASP and Sentinel LDK products prior to Sentinel LDK RTE version 7.55 leads to new attack vectors.

CVSS 9.9 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-14350

Published Sep 30, 2017

A potential security vulnerability has been identified in HPE Application Performance Management (BSM) Platform versions 9.26, 9.30, 9.40. The vulnerability could be remotely expl…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-14417

Published Sep 13, 2017

register_send.php on D-Link DIR-850L REV. B (with firmware through FW208WWb02) devices does not require authentication, which can result in unintended enrollment in mydlink Cloud…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-12733

Published Sep 9, 2017

A Missing Authentication for Critical Function issue was discovered in OPW Fuel Management Systems SiteSentinel Integra 100, SiteSentinel Integra 500, and SiteSentinel iSite ATG c…

CVSS 9.8 · Critical

CVE-2017-12440

Published Aug 18, 2017

Aodh as packaged in Openstack Ocata and Newton before change-ID I8fd11a7f9fe3c0ea5f9843a89686ac06713b7851 and before Pike-rc1 does not verify that trust IDs belong to the user whe…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 2,826-2,850 of 2,880 CVEsPage 114 of 116