CWE-358
Improperly Implemented Security Check for Standard
The product does not implement or incorrectly implements one or more security-relevant checks as specified by the design of a standardized algorithm, protocol, or technique.
122 vulnerabilities with CWE-358
CVE-2017-2604
MEDIUM
Jenkins <2.44 - Privilege Escalation
CVSS 4.3
CVE-2017-2612
MEDIUM
Jenkins <2.44, 2.32.2 - Privilege Escalation
CVSS 5.4
CVE-2017-2611
MEDIUM
Jenkins <2.44, 2.32.2 - Privilege Escalation
CVSS 4.3
CVE-2017-15706
MEDIUM
Apache Tomcat 7.0.79-9.0.1 - Info Disclosure
CVSS 5.3
CVE-2017-15107
HIGH
dnsmasq <= 2.78 - DNSSEC Validation Bypass via Wildcard NSEC Record
CVSS 7.5
CVE-2017-15105
MEDIUM
Unbound < 1.6.8 - Improperly Implemented Security Check for Standard
CVSS 5.3
CVE-2017-15091
HIGH
PowerDNS Authoritative 3.0-3.4.11 and 4.0-4.0.4 - Authenticated Unauthorized State Change via API
CVSS 7.1
CVE-2017-15665
HIGH
Flexense DiskBoss Enterprise 8.5.12 - Denial of Service via Crafted SERVER_GET_INFO Packet
CVSS 7.5
CVE-2017-15664
HIGH
Flexense Syncbreeze - Denial of Service
CVSS 7.5
CVE-2017-15663
HIGH
Flexense Disk Pulse Enterprise 10.1.18 - Denial of Service via Crafted SERVER_GET_INFO Packet
CVSS 7.5
CVE-2017-15662
HIGH
Flexense VX Search Enterprise 10.1.12 - Denial of Service via Crafted SERVER_GET_INFO Packet
CVSS 7.5
CVE-2017-8152
MEDIUM
Huawei Honor 5S <TAG-TL00C01B173 - Privilege Escalation
CVSS 4.6
CVE-2017-12303
MEDIUM
Cisco AsyncOS Software - Auth Bypass
CVSS 5.3
CVE-2017-6032
MEDIUM
Schneider Electric Modicon - Info Disclosure
CVSS 5.3
CVE-2017-7177
HIGH
Suricata < 3.2 - IPv4 Fragment Evasion via Missing Protocol Check
CVSS 7.5
CVE-2016-10834
HIGH
cPanel 11.50.0.4-11.50.5.2 - Account Suspension Bypass via FTP
CVSS 8.8
CVE-2016-10825
HIGH
cPanel 11.50.0.4-11.50.5.2 - Security Policy Bypass via Fake Static Documents
CVSS 8.1
CVE-2016-8635
MEDIUM
Mozilla Network Security Services 3.21-3.21.4 - Private Key Recovery via Small Subgroup Confinement Attack
CVSS 5.3
CVE-2016-8614
MEDIUM
Ansible <2.2.0 - OpenPGP Key Injection
CVSS 6.3
CVE-2016-10229
CRITICAL
Linux Kernel < 4.5 - Remote Code Execution via UDP MSG_PEEK Checksum Calculation
CVSS 9.8
CVE-2016-3017
HIGH
IBM Security Access Manager for Web - Info Disclosure
CVSS 7.5
CVE-2014-4843
MEDIUM
IBM Curam SPM <6.0.5.5 - Info Disclosure
CVSS 5.3
Details
Vulnerabilities
122