Falhas do tipo CWE-290

466 resultados
CVE-2021-27861MEDIUML2 network filtering bypass using stacked VLAN0 and LLC/SNAP headers with invalid lengthsEPSS 0.6%CVE-2023-22814CRITICALAuthentication Bypass issue in My Cloud OS 5 devicesEPSS 0.6%CVE-2023-3103HIGHAuthentication Bypass by Spoofing in Unitree Robotics A1EPSS 0.6%CVE-2023-36883MEDIUMMicrosoft Edge for iOS Spoofing VulnerabilityEPSS 0.6%CVE-2023-41329LOWDomain restrictions bypass via DNS Rebinding in WireMock and WireMock StudioEPSS 0.6%CVE-2025-27671CRITICALVasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Device Impersonation OVE-20230524-0EPSS 0.6%CVE-2026-49757CRITICALOAuth2/OIDC account takeover in AshAuthentication via email-based user matchingEPSS 0.6%CVE-2023-20256MEDIUMMultiple vulnerabilities in the per-user-override feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat DefEPSS 0.6%CVE-2021-21492MEDIUMSAP NetWeaver Application Server Java(HTTP Service), versions - 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, does not sufficiently validate logEPSS 0.6%CVE-2023-20246MEDIUMMultiple Cisco products are affected by a vulnerability in Snort access control policies that could allow an unauthenticated, remote attackeEPSS 0.6%CVE-2020-22660HIGHIn Ruckus R310 10.5.1.0.199, Ruckus R500 10.5.1.0.199, Ruckus R600 10.5.1.0.199, Ruckus T300 10.5.1.0.199, Ruckus T301n 10.5.1.0.199, RuckusEPSS 0.6%CVE-2025-34053MEDIUMAVTECH IP camera, DVR, and NVR Devices Authentication Bypass via .cab Path ManipulationEPSS 0.5%CVE-2023-43304HIGHAn issue in PARK DANDAN mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access EPSS 0.5%CVE-2024-10462HIGHTruncation of a long URL could have allowed origin spoofing in a permission prompt. This vulnerability affects Firefox < 132, Firefox ESR < EPSS 0.5%CVE-2024-10465HIGHA clipboard "paste" button could persist across tabs which allowed a spoofing attack. This vulnerability affects Firefox < 132, Firefox ESR EPSS 0.5%CVE-2024-37082CRITICALWhen deploying Cloud Foundry together with the haproxy-boshrelease and using a non default configuration, it might be possible to craft HTTPEPSS 0.5%CVE-2023-4001MEDIUMGrub2: bypass the grub password protection featureEPSS 0.5%CVE-2025-34065MEDIUMAVTECH IP camera, DVR, and NVR Devices Authentication Bypass via /nobody URL PathEPSS 0.5%CVE-2020-37056MEDIUMCrystal Shard http-protection 0.2.0 - IP Spoofing BypassEPSS 0.5%CVE-2024-30479MEDIUMWordPress LionScripts: IP Blocker Lite plugin <= 11.1.1 - Bypass vulnerabilityEPSS 0.5%