CWE-602

Medium likelihood

Client-Side Enforcement of Server-Side Security

Parent: CWE-693 - Protection Mechanism Failure

The product is composed of a server that relies on the client to implement a mechanism that is intended to protect the server.

104 vulnerabilities with CWE-602
CVE-2026-5901 MEDIUM
Google Chrome <147.0.7727.55 - Policy Enforcement Bypass
CVSS 6.5
CVE-2026-39415 MEDIUM
Frappe Learning Management System has Client-Side Manipulation of Quiz Scores
CVSS 4.3
CVE-2026-30522 MEDIUM
SourceCodester Loan Management System 1.0 - Business Logic
CVSS 6.5
CVE-2026-30521 MEDIUM
SourceCodester Loan Management System 1.0 - Business Logic
CVSS 6.5
CVE-2026-3941 MEDIUM
Google Chrome <146.0.7680.71 - Auth Bypass
CVSS 4.3
CVE-2026-30933 HIGH
FileBrowser Quantum <1.3.1-beta/1.2.2-stable - Info Disclosure
CVSS 7.5
CVE-2026-25737 HIGH
Budibase <=3.24.0 - Arbitrary File Upload
CVSS 8.9
CVE-2026-29077 HIGH
Frappe <15.98.0/14.100.0 - Privilege Escalation
CVSS 7.1
CVE-2026-30783 CRITICAL
RustDesk Client <=1.4.5 - Privilege Escalation
CVSS 9.8
CVE-2026-23859 LOW
Dell Wyse Management Suite <5.5 - Auth Bypass
CVSS 2.7
CVE-2026-0808 MEDIUM
Spin Wheel <2.1.0 - XSS
CVSS 5.3
CVE-2026-23478 CRITICAL
Cal.com <6.0.7 - Auth Bypass
CVSS 9.8
CVE-2025-36410 LOW
IBM ApplinX 11.1 - Privilege Escalation
CVSS 3.1
CVE-2025-14687 MEDIUM
IBM Db2 Intelligence Center <1.1.3 - Privilege Escalation
CVSS 4.3
CVE-2025-66507 HIGH
1Panel <2.0.13 - Auth Bypass
CVSS 7.5
CVE-2025-36102 LOW
IBM Controller <11.1.1 - Auth Bypass
CVSS 2.7
CVE-2025-51682 CRITICAL
mJobtime <15.7.2 - Code Injection
CVSS 9.8
CVE-2025-7820 HIGH
SKT PayPal for WooCommerce <1.4 - Auth Bypass
CVSS 7.5
CVE-2025-10161 HIGH
Turkguven Software Technologies Inc. Perfektive <12574.2701 - Auth ...
CVSS 7.3
CVE-2025-12788 MEDIUM
Hydra Booking - Appointment Scheduling & Booking Calendar <1.1.27 -...
CVSS 5.3
CVE-2025-36093 MEDIUM
IBM Cloud Pak For Business Automation <25.0.0 - Info Disclosure
CVSS 4.8
CVE-2025-12115 HIGH
WPC Name Your Price for WooCommerce <2.1.9 - Info Disclosure
CVSS 7.5
CVE-2025-41402 MEDIUM
Command Centre Server <9.30.2482, <9.20.2819, <9.10.3672, <=9.00 - ...
CVSS 5.5
CVE-2025-10640 CRITICAL
WorkExaminer Professional - Auth Bypass
CVSS 9.8
CVE-2025-2139 LOW
IBM Engineering Requirements Management Doors Next <7.1 - Privilege...
CVSS 3.5
Details
Vulnerabilities 104
Exploit Likelihood Medium