Skip to main content

CWE archive

CWE-306 CVEs

Programmatic archive

2,933 CVEs tagged with CWE-3061,100 Critical, 1,147 High, 634 Medium, 52 Low, 0 Unrated.

CVE-2016-6549

Published Jul 13, 2018

The Zizai Tech Nut device allows unauthenticated Bluetooth pairing, which enables unauthenticated connected applications to write data to the device name attribute.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-6544

Published Jul 13, 2018

getgps data in iTrack Easy can be modified without authentication by setting the data using the parametercmd:setothergps. This vulnerability can be exploited to alter the GPS data…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-0919

Published Jul 3, 2018

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10.3.4 are vulnerable to an authorization bypass issue in the GitLab import component resulting in an attacker…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2018-8016

Published Jun 28, 2018

The default configuration in Apache Cassandra 3.8 through 3.11.1 binds an unauthenticated JMX/RMI interface to all network interfaces, which allows remote attackers to execute arb…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2018-6223

Published Mar 15, 2018

A missing authentication for appliance registration vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to manipulate the registration process of the…

CVSS 9.8 · Critical
evidence mentions
3
Buzz score
21.9
Vendor/product tagsBeta · best-effort
Showing 2,851-2,875 of 2,933 CVEsPage 115 of 118