CWE-664

Improper Control of a Resource Through its Lifetime

The product does not maintain or incorrectly maintains control over a resource throughout its lifetime of creation, use, and release.

41 vulnerabilities with CWE-664
CVE-2022-31153 MEDIUM
OpenZeppelin Contracts for Cairo <0.2.0 - Info Disclosure
CVSS 6.5
CVE-2022-2191 HIGH
Eclipse Jetty <11.0.9 - Memory Corruption
CVSS 7.5
CVE-2022-2048 HIGH
Eclipse Jetty < 9.4.47 - Denial of Service via HTTP/2 Request Error Handling
CVSS 7.5
CVE-2022-27512 MEDIUM
Citrix Application Delivery Management < 13.0-85.19 - Denial of Service via License Service Disruption
CVSS 5.3
CVE-2022-20748 MEDIUM
Cisco Firepower Threat Defense - DoS
CVSS 5.3
CVE-2022-1385 LOW
Mattermost < 6.5.0 - Unauthenticated Exposure of Resource to Wrong Sphere via Email Invitation
CVSS 3.7
CVE-2021-1592 MEDIUM
Cisco Unified Computing System 4.0-4.0(4m) - Authenticated Denial of Service via SSH Session Exhaustion
CVSS 4.3
CVE-2020-36774 MEDIUM
GNOME Glade < 3.38.1 and 3.39.x < 3.40.0 - Denial of Service via Widget Rebuilding
CVSS 5.5
CVE-2020-3504 LOW
Cisco UCS Manager Software - Authenticated Denial of Service via Local Management CLI Command Parameters
CVSS 3.3
CVE-2020-1622 MEDIUM
Junos OS Evolved < 19.1R1 - Authenticated Sensitive Information Exposure via EvoSharedObjStore
CVSS 5.5
CVE-2020-1621 MEDIUM
Junos OS Evolved < 19.3r1 - Authenticated Password Hash Exposure via Configd Traces
CVSS 5.5
CVE-2020-1620 MEDIUM
Junos OS Evolved < 19.3R1 - Authenticated Password Hash Exposure via Configd Streamer Log
CVSS 5.5
CVE-2020-3175 HIGH
Cisco NX-OS for MDS 9000 Series - Unauthenticated Denial of Service via Management Interface Traffic Flood
CVSS 8.6
CVE-2019-16779 MEDIUM
RubyGem excon <0.71.0 - Info Disclosure
CVSS 5.8
CVE-2019-5816 HIGH
Chrome < 74.0.3729.108 - Process Lifetime Issue via Crafted HTML Page
CVSS 8.8
CVE-2016-8763 HIGH
Huawei P9 <EVA-AL10C00B352 - Privilege Escalation
CVSS 7.8
Details
Vulnerabilities 41