CWE-451
User Interface (UI) Misrepresentation of Critical Information
The user interface (UI) does not properly represent critical information to the user, allowing the information - or its source - to be obscured or spoofed. This is often a component in phishing attacks.
343 vulnerabilities with CWE-451
CVE-2021-27773
MEDIUM
Hcltech HCL Sametime Meeting Chat - Clickjacking
CVSS 4.2
CVE-2021-27414
MEDIUM
Hitachi ABB Power Grids Ellipse EAM <9.0.25 - CSRF
CVSS 5.5
CVE-2021-41598
HIGH
GitHub Enterprise Server - Info Disclosure
CVSS 8.8
CVE-2021-33593
MEDIUM
Whale < 1.14.0 - Address Bar Spoofing via UI Misrepresentation
CVSS 5.3
CVE-2021-22866
HIGH
GitHub Enterprise Server - Privilege Escalation
CVSS 8.8
CVE-2020-9236
HIGH
Huawei FusionCompute - User Interface Misrepresentation of Critical Information
CVSS 8.8
CVE-2020-7371
MEDIUM
Yandex Browser <3.3.9 - Info Disclosure
CVSS 4.3
CVE-2020-7370
MEDIUM
Bolt Browser < 1.4 - Address Bar Spoofing
CVSS 4.3
CVE-2020-7369
MEDIUM
Yandex Browser < 20.8.4 - Address Bar Spoofing
CVSS 4.3
CVE-2020-7364
MEDIUM
UCWeb UC Browser <13.0.8 - Info Disclosure
CVSS 4.3
CVE-2020-7363
MEDIUM
UCWeb UC Browser <13.0.8 - Info Disclosure
CVSS 4.3
CVE-2020-10775
MEDIUM
ovirt-engine <4.4 - Open Redirect
CVSS 5.3
CVE-2019-25718
HIGH
Drger Infinity Explorer C700 - Privilege Escalation via Kiosk Mode Dialog Interaction
CVSS 8.4
CVE-2017-0888
MEDIUM
Nextcloud Server <9.0.55, 10.0.2 - Info Disclosure
CVSS 4.3
CVE-2016-9473
MEDIUM
Brave Browser iOS < 1.2.18 and Android <= 1.9.56 - Full Address Bar Spoofing
CVSS 4.7
CVE-2016-9468
MEDIUM
Nextcloud Server <9.0.54, 10.0.1 & ownCloud Server <9.0.6, 9.1.2 - Content Spoofing via DAV
CVSS 5.3
CVE-2016-9467
MEDIUM
Nextcloud Server < 9.0.54 and 10.0.1 & ownCloud Server < 9.0.6 and 9.1.2 - Content Spoofing in Files App Location Bar
CVSS 5.3
CVE-2016-9460
MEDIUM
Nextcloud Server < 9.0.52 and ownCloud Server < 9.0.4 - Content Spoofing in Files App Location Bar
CVSS 5.3
Details
Vulnerabilities
343