CWE-358

Improperly Implemented Security Check for Standard

Parent: CWE-573 - Improper Following of Specification by Caller

The product does not implement or incorrectly implements one or more security-relevant checks as specified by the design of a standardized algorithm, protocol, or technique.

132 vulnerabilities with CWE-358
CVE-2016-10834 HIGH
cPanel 11.50.0.4-11.50.5.2 - Account Suspension Bypass via FTP
CVSS 8.8
CVE-2016-10825 HIGH
cPanel 11.50.0.4-11.50.5.2 - Security Policy Bypass via Fake Static Documents
CVSS 8.1
CVE-2016-8635 MEDIUM
Mozilla Network Security Services 3.21-3.21.4 - Private Key Recovery via Small Subgroup Confinement Attack
CVSS 5.3
CVE-2016-8614 MEDIUM
Ansible <2.2.0 - OpenPGP Key Injection
CVSS 6.3
CVE-2016-10229 CRITICAL
Linux Kernel < 4.5 - Remote Code Execution via UDP MSG_PEEK Checksum Calculation
CVSS 9.8
CVE-2016-3017 HIGH
IBM Security Access Manager for Web - Info Disclosure
CVSS 7.5
CVE-2014-4843 MEDIUM
IBM Curam SPM <6.0.5.5 - Info Disclosure
CVSS 5.3
Details
Vulnerabilities 132