CWE-15

External Control of System or Configuration Setting

Parent: CWE-642 - External Control of Critical State Data

One or more system settings or configuration elements can be externally controlled by a user.

58 vulnerabilities with CWE-15
CVE-2023-3321 HIGH
ABB Ability zenon <11.106404 - Info Disclosure
CVSS 7.0
CVE-2023-32349 HIGH
Teltonika RUT - Code Injection
CVSS 8.0
CVE-2023-32076 MEDIUM
in-toto <1.4.0 - Info Disclosure
CVSS 5.5
CVE-2022-41582 HIGH
Huawei EMUI and HarmonyOS - Denial of Service via Security Module Configuration Defects
CVSS 7.5
CVE-2021-27406 HIGH
PerFact OpenVPN-Client <1.4.1.0 - Privilege Escalation
CVSS 8.8
CVE-2021-38453 CRITICAL
Registry Interaction - Info Disclosure
CVSS 9.1
CVE-2021-31338 HIGH
SINEMA Remote Connect Client <V3.0 SP1 - Privilege Escalation
CVSS 7.8
CVE-2021-3707 MEDIUM
D-Link router DSL-2750U <vME1.16 - RCE
CVSS 5.5
Details
Vulnerabilities 58