CWE-358

Improperly Implemented Security Check for Standard

Parent: CWE-573 - Improper Following of Specification by Caller

The product does not implement or incorrectly implements one or more security-relevant checks as specified by the design of a standardized algorithm, protocol, or technique.

111 vulnerabilities with CWE-358
CVE-2017-8152 MEDIUM
Huawei Honor 5S <TAG-TL00C01B173 - Privilege Escalation
CVSS 4.6
CVE-2017-12303 MEDIUM
Cisco AsyncOS Software - Auth Bypass
CVSS 5.3
CVE-2017-6032 MEDIUM
Schneider Electric Modicon - Info Disclosure
CVSS 5.3
CVE-2017-7177 HIGH
Suricata <3.2.1 - RCE
CVSS 7.5
CVE-2016-10834 HIGH
cPanel <55.9999.141 - Auth Bypass
CVSS 8.8
CVE-2016-10825 HIGH
cPanel <55.9999.141 - Auth Bypass
CVSS 8.1
CVE-2016-8635 MEDIUM
NSS 3.21.x - Memory Corruption
CVSS 5.3
CVE-2016-8614 MEDIUM
Ansible <2.2.0 - OpenPGP Key Injection
CVSS 6.3
CVE-2016-10229 CRITICAL
Linux kernel <4.5 - RCE
CVSS 9.8
CVE-2016-3017 HIGH
IBM Security Access Manager for Web - Info Disclosure
CVSS 7.5
CVE-2014-4843 MEDIUM
IBM Curam SPM <6.0.5.5 - Info Disclosure
CVSS 5.3
Details
Vulnerabilities 111