CWE-358

Improperly Implemented Security Check for Standard

Parent: CWE-573 - Improper Following of Specification by Caller

The product does not implement or incorrectly implements one or more security-relevant checks as specified by the design of a standardized algorithm, protocol, or technique.

111 vulnerabilities with CWE-358
CVE-2020-1728 MEDIUM
Keycloak - Info Disclosure
CVSS 4.8
CVE-2020-7251 MEDIUM
McAfee ENS <10.6.1 - Info Disclosure
CVSS 5.0
CVE-2019-14823 HIGH
JSS CryptoManager >4.4.6-4.6.0 - Privilege Escalation
CVSS 7.4
CVE-2019-6742 CRITICAL
Samsung Galaxy S9 <1.4.20.2 - RCE
CVSS 9.8
CVE-2019-3894 HIGH
Wildfly <16 - Privilege Escalation
CVSS 8.8
CVE-2019-3806 HIGH
PowerDNS Recursor >=4.1.3 <4.1.9 - Privilege Escalation
CVSS 8.1
CVE-2018-20934 MEDIUM
cPanel <70.0.23 - Info Disclosure
CVSS 6.5
CVE-2018-16860 HIGH
Samba <4.8.12, <4.9.8, <4.10.3 - Privilege Escalation
CVSS 7.5
CVE-2018-16857 HIGH
Samba <4.9.3 - Info Disclosure
CVSS 7.4
CVE-2018-7685 HIGH
libzypp <17.5.0 - Info Disclosure
CVSS 7.8
CVE-2018-1243 HIGH
Dell EMC iDRAC6 <2.91 - iDRAC7/iDRAC8 <2.60.60.60 - iDRAC9 <3.21.21...
CVSS 7.5
CVE-2018-0268 CRITICAL
Cisco DNA Center - Privilege Escalation
CVSS 10.0
CVE-2018-1275 CRITICAL
Vmware Spring Framework < 4.3.16 - Remote Code Execution
CVSS 9.8
CVE-2018-1270 CRITICAL
Vmware Spring Framework < 4.3.16 - Remote Code Execution
CVSS 9.8
CVE-2017-2604 MEDIUM
Jenkins <2.44 - Privilege Escalation
CVSS 4.3
CVE-2017-2612 MEDIUM
Jenkins <2.44, 2.32.2 - Privilege Escalation
CVSS 5.4
CVE-2017-2611 MEDIUM
Jenkins <2.44, 2.32.2 - Privilege Escalation
CVSS 4.3
CVE-2017-15706 MEDIUM
Apache Tomcat 7.0.79-9.0.1 - Info Disclosure
CVSS 5.3
CVE-2017-15107 HIGH
Dnsmasq <2.78 - Info Disclosure
CVSS 7.5
CVE-2017-15105 MEDIUM
Unbound <1.6.8 - Info Disclosure
CVSS 5.3
CVE-2017-15091 HIGH
Powerdns Authoritative < 3.4.11 - Incorrect Authorization
CVSS 7.1
CVE-2017-15665 HIGH
Flexense Diskboss - Denial of Service
CVSS 7.5
CVE-2017-15664 HIGH
Flexense Syncbreeze - Denial of Service
CVSS 7.5
CVE-2017-15663 HIGH
Flexense Disk Pulse - Denial of Service
CVSS 7.5
CVE-2017-15662 HIGH
Flexense VX Search - Denial of Service
CVSS 7.5
Details
Vulnerabilities 111