CWE-693

Protection Mechanism Failure

The product does not use or incorrectly uses a protection mechanism that provides sufficient defense against directed attacks against the product.

554 vulnerabilities with CWE-693
CVE-2018-9320 HIGH
BMW Head Unit HU_NBT - Local Attack
CVSS 7.8
CVE-2018-9318 CRITICAL
BMW Telematics Control Unit Firmware - Remote Code Execution via Cellular Network
CVSS 9.8
CVE-2018-9314 MEDIUM
BMW Head Unit HU_NBT - Info Disclosure
CVSS 6.8
CVE-2018-9313 MEDIUM
BMW Head Unit HU_NBT Firmware - Denial of Service via Bluetooth Pairing Mode
CVSS 5.3
CVE-2018-9312 HIGH
BMW Head Unit HU_NBT - Local Attack
CVSS 7.8
CVE-2018-9311 CRITICAL
BMW Telematics Control Unit Firmware - Remote Code Execution via Cellular Network
CVSS 9.8
CVE-2018-0326 MEDIUM
Cisco TelePresence Server Software - XSS
CVSS 6.1
CVE-2018-0297 MEDIUM
Cisco Firepower Threat Defense - Auth Bypass
CVSS 5.8
CVE-2018-0250 MEDIUM
Cisco Aironet Access Point Software - Authenticated FlexConnect ACL Bypass via Central Web Authentication
CVSS 4.1
CVE-2018-0254 MEDIUM
Cisco Firepower System Software - Auth Bypass
CVSS 5.3
CVE-2018-0244 MEDIUM
Cisco Firepower System Software - Auth Bypass
CVSS 5.8
CVE-2018-0243 MEDIUM
Cisco Firepower System Software - Info Disclosure
CVSS 5.8
CVE-2018-0198 MEDIUM
Cisco Unified Communications Manager - Info Disclosure
CVSS 5.3
CVE-2018-7504 MEDIUM
OSIsoft PI Vision < 2017 - Reflected Cross-Site Scripting via Missing X-XSS-Protection Header
CVSS 6.1
CVE-2018-1170 HIGH
Volkswagen Customer-Link App 1.30 & HTC Customer-Link Bridge - Code...
CVSS 8.8
CVE-2018-0138 MEDIUM
Cisco Firepower System Software - Auth Bypass
CVSS 5.3
CVE-2018-6794 MEDIUM
Suricata < 4.0.4 - HTTP Detection Bypass via TCP Handshake Evasion
CVSS 5.3
CVE-2018-0094 HIGH
Cisco Unified Computing System Central Software - Unauthenticated Denial of Service via IPv6 Ingress Packet Flood
CVSS 7.5
CVE-2017-6261 HIGH
NVIDIA Vibrante Linux 1.1, 2.0, 2.2 - Denial of Service or Information Disclosure via Insufficient Protection Mechanisms
CVSS 8.2
CVE-2017-3197 CRITICAL
GIGABYTE BRIX UEFI - Info Disclosure
CVSS 9.8
CVE-2017-8864 CRITICAL
Cohu 3960HD Firmware - Protection Mechanism Failure via Client-Side Enforcement Bypass
CVSS 9.8
CVE-2017-3893 LOW
BlackBerry QNX Software Development Platform <6.6.0 - Buffer Overflow
CVSS 1.9
CVE-2017-10952 HIGH
Foxit Reader 8.2.0.2051 - Arbitrary File Write via saveAs JavaScript Function
CVSS 8.8
CVE-2017-2685 HIGH
Siemens Sinumerik Integrate Access My... - Information Disclosure
CVSS 7.4
CVE-2016-0772 MEDIUM
CPython <3.4.5-2.7.12 - Info Disclosure
CVSS 6.5
Details
Vulnerabilities 554