CWE-693

Protection Mechanism Failure

The product does not use or incorrectly uses a protection mechanism that provides sufficient defense against directed attacks against the product.

550 vulnerabilities with CWE-693
CVE-2025-21384 HIGH
Microsoft Azure Health Bot - Authenticated Server-Side Request Forgery
CVSS 8.3
CVE-2025-24061 HIGH
Windows MOTW - Privilege Escalation
CVSS 7.8
CVE-2025-27665 CRITICAL
Vasion Print <22.0.843 - Info Disclosure
CVSS 9.8
CVE-2025-0411 HIGH KEV
7-Zip 24.09 - Mark-of-the-Web Bypass Code Execution
CVSS 7.0
CVE-2025-0575 LOW
Union Bank of India Vyom 8.0.34 - Protection Mechanism Failure
CVSS 3.9
CVE-2025-21346 HIGH
Microsoft Office - Security Feature Bypass
CVSS 7.1
CVE-2025-21276 HIGH
Windows 10 1507-24H2 and Windows Server 2008-2012 - Denial of Service via MapUrlToZone Integer Underflow
CVSS 7.5
CVE-2025-21217 MEDIUM
Windows NTLM Spoofing - Privilege Escalation
CVSS 6.5
CVE-2025-21211 MEDIUM
Windows 10 1507-22H2, Windows 11 22H2-24H2, Windows Server 2012/2016 - Secure Boot Security Feature Bypass
CVSS 6.8
CVE-2024-36315 MEDIUM
AMD EPYC Series 9004 Processors - Information Disclosure via Improper LFENCE Serialization Enforcement
CVE-2024-55024 CRITICAL
Weintek cMT-3072XH2 v2.1.53 - Auth Bypass
CVSS 9.8
CVE-2024-31328 HIGH
BroadcastController - Privilege Escalation
CVSS 8.8
CVE-2024-49720 HIGH
Permissions.java - Privilege Escalation
CVSS 7.8
CVE-2024-56182 HIGH
SIMATIC Field PG M5-IPC PX-39A - Info Disclosure
CVSS 8.2
CVE-2024-56181 HIGH
SIMATIC Field PG M5, SIMATIC IPC BX-21A <V31.01.07, SIMATIC IPC BX-...
CVSS 8.2
CVE-2024-13794 MEDIUM
WP Ghost (Hide My WP Ghost) <= 5.3.02 - Unauthenticated Login Page Disclosure
CVSS 5.3
CVE-2024-11734 MEDIUM
Keycloak < 26.0.8 - Authenticated Denial of Service via Security Header Newline Injection
CVSS 6.5
CVE-2024-56326 HIGH
Jinja < 3.1.5 - Remote Code Execution via Sandboxed Template String Format Bypass
CVSS 7.8
CVE-2024-8811 HIGH
WinZip < 76.8 - Mark-of-the-Web Protection Mechanism Bypass via Archive Extraction
CVSS 7.8
CVE-2024-11197 MEDIUM
Lock User Account plugin <1.0.5 - Auth Bypass
CVSS 4.2
CVE-2024-38660 LOW
Intel(R) Xeon(R) E-Core - Privilege Escalation
CVSS 3.8
CVE-2024-36242 HIGH
Intel(R) Processors - Privilege Escalation
CVSS 8.8
CVE-2024-43645 MEDIUM
Windows Defender Application Control - Privilege Escalation
CVSS 6.7
CVE-2024-38203 MEDIUM
Windows Package Library Manager - Info Disclosure
CVSS 6.2
CVE-2024-51481 LOW
Nix <2.18.9-2.24.10 - Info Disclosure
Details
Vulnerabilities 550