CWE-670

Always-Incorrect Control Flow Implementation

Parent: CWE-691 - Insufficient Control Flow Management

The code contains a control flow path that does not reflect the algorithm that the path is intended to implement, leading to incorrect behavior any time this path is navigated.

130 vulnerabilities with CWE-670
CVE-2024-35190 MEDIUM
Asterisk <18.23.0 - Info Disclosure
CVSS 5.8
CVE-2024-32971 CRITICAL
Apollo Router - Unintended Operations
CVSS 9.0
CVE-2024-33431 MEDIUM
Stsaz Phiola - Denial of Service
CVSS 6.5
CVE-2024-3376 HIGH
SourceCodester Computer Laboratory Management System 1.0 - RCE
CVSS 7.3
CVE-2024-30246 HIGH
Tuleap - Info Disclosure
CVSS 7.6
CVE-2024-0313 MEDIUM
Temporary Bypass - Privilege Escalation
CVSS 5.5
CVE-2023-52781 MEDIUM
Linux kernel - Buffer Overflow
CVSS 5.5
CVE-2023-52742 MEDIUM
Linux kernel - Buffer Overflow
CVSS 5.5
CVE-2023-46840 MEDIUM
Xen - Info Disclosure
CVSS 4.1
CVE-2023-31211 HIGH
Checkmk <2.2.0p18-2.0.0p39 - Auth Bypass
CVSS 8.8
CVE-2023-49798 MEDIUM
OpenZeppelin Contracts <4.9.4 - Info Disclosure
CVSS 5.9
CVE-2023-41338 MEDIUM
gofiber <2.49.2 - Info Disclosure
CVSS 5.3
CVE-2023-23623 HIGH
Electron - Code Injection
CVSS 7.5
CVE-2023-41058 HIGH
Parse Server - Info Disclosure
CVSS 7.5
CVE-2023-41052 LOW
Vyper - Info Disclosure
CVSS 3.7
CVE-2023-40015 LOW
Vyper - Code Injection
CVSS 3.7
CVE-2023-41376 HIGH
Nokia SR OS/SR Linux <22.10 - Info Disclosure
CVSS 7.5
CVE-2023-28711 MEDIUM
Hyperscan Library <5.4.1 - DoS
CVSS 5.5
CVE-2023-39152 MEDIUM
Jenkins Gradle Plugin 2.8 - Info Disclosure
CVSS 6.5
CVE-2023-32675 LOW
Vyper <0.3.8 - Code Injection
CVSS 3.7
CVE-2023-30629 HIGH
Vyper <0.3.8 - Info Disclosure
CVSS 7.5
CVE-2023-1668 HIGH
openvswitch - Info Disclosure
CVSS 8.2
CVE-2023-20558 HIGH
AmdCpmOemSmm - Privilege Escalation
CVSS 8.8
CVE-2023-0400 MEDIUM
DLP for Windows <11.10.0 - Privilege Escalation
CVSS 5.9
CVE-2023-20921 HIGH
Android - Privilege Escalation
CVSS 7.3
Details
Vulnerabilities 130