CWE-506

Embedded Malicious Code

Parent: CWE-912 - Hidden Functionality

The product contains code that appears to be malicious in nature.

85 vulnerabilities with CWE-506
CVE-2017-16078 HIGH
shadowsock - Exposure of Sensitive Information via Malicious Environment Variable Hijacking
CVSS 7.5
CVE-2017-16077 HIGH
mongose - Exposure of Sensitive Information via Malicious Environment Variable Hijacking
CVSS 7.5
CVE-2017-16076 HIGH
proxy.js - Exposure of Sensitive Information via Environment Variable Hijacking
CVSS 7.5
CVE-2017-16075 HIGH
http-proxy.js - Exposure of Sensitive Information via Malicious Environment Variable Hijacking
CVSS 7.5
CVE-2017-16074 HIGH
crossenv - Exposure of Sensitive Information via Malicious Environment Variable Hijacking
CVSS 7.5
CVE-2017-16073 HIGH
noderequest - Exposure of Sensitive Information via Environment Variable Hijacking
CVSS 7.5
CVE-2017-16072 HIGH
nodemailer.js - Exposure of Sensitive Information via Malicious Environment Variable Hijacking
CVSS 7.5
CVE-2017-16071 HIGH
nodemailer-js - Exposure of Sensitive Information via Malicious Environment Variable Hijacking
CVSS 7.5
CVE-2017-16070 HIGH
nodecaffe - Exposure of Sensitive Information via Environment Variable Hijacking
CVSS 7.5
CVE-2017-16069 HIGH
nodeffmpeg - Exposure of Sensitive Information via Malicious Environment Variable Hijacking
CVSS 7.5
CVE-2017-16068 HIGH
ffmepg - Exposure of Sensitive Information via Malicious Environment Variable Hijacking
CVSS 7.5
CVE-2017-16067 HIGH
node-opencv - Exposure of Sensitive Information via Malicious Environment Variable Hijacking
CVSS 7.5
CVE-2017-16066 HIGH
opencv.js - Exposure of Sensitive Information via Malicious Environment Variable Hijacking
CVSS 7.5
CVE-2017-16065 HIGH
openssl.js - Exposure of Sensitive Information via Malicious Environment Variable Hijacking
CVSS 7.5
CVE-2017-16064 HIGH
node-openssl - Exposure of Sensitive Information via Malicious Environment Variable Hijacking
CVSS 7.5
CVE-2017-16063 HIGH
node-opensl - Exposure of Sensitive Information via Environment Variable Hijacking
CVSS 7.5
CVE-2017-16060 HIGH
babelcli - Exposure of Sensitive Information via Environment Variable Hijacking
CVSS 7.5
CVE-2017-16059 HIGH
mssql-node - Exposure of Sensitive Information via Malicious Environment Variable Hijacking
CVSS 7.5
CVE-2017-16058 HIGH
gruntcli - Exposure of Sensitive Information via Environment Variable Hijacking
CVSS 7.5
CVE-2017-16057 HIGH
nodemssql - Exposure of Sensitive Information via Malicious Environment Variable Hijacking
CVSS 7.5
CVE-2017-16056 HIGH
mssql.js - Exposure of Sensitive Information via Malicious Environment Variable Hijacking
CVSS 7.5
CVE-2017-16055 HIGH
sqlserver - Exposure of Sensitive Information via Malicious Environment Variable Hijacking
CVSS 7.5
CVE-2017-16054 HIGH
nodefabric - Exposure of Sensitive Information via Environment Variable Hijacking
CVSS 7.5
CVE-2017-16053 HIGH
fabric-js - Exposure of Sensitive Information via Malicious Environment Variable Hijacking
CVSS 7.5
CVE-2017-16052 HIGH
node-fabric - Exposure of Sensitive Information via Environment Variable Hijacking
CVSS 7.5
Details
Vulnerabilities 85