CWE-693
Protection Mechanism Failure
The product does not use or incorrectly uses a protection mechanism that provides sufficient defense against directed attacks against the product.
675 vulnerabilities with CWE-693
CVE-2021-1224
MEDIUM
Cisco Snort TFO - HTTP File Policy Bypass via TCP Fast Open Payload
CVSS 5.8
CVE-2021-1223
HIGH
Cisco Firepower Threat Defense < 6.7.0 and IOS XE < 17.4.1 - Unauthenticated File Policy Bypass via HTTP Range Header
CVSS 7.5
CVE-2020-12954
MEDIUM
Integrated Chipset Option - Privilege Escalation
CVSS 5.5
CVE-2020-28396
HIGH
SICAM A8000 CP-8000/8021/8022 Firmware < V16 - Use of Broken Cryptographic Algorithm via Web Server Misconfiguration
CVSS 7.3
CVE-2020-3458
MEDIUM
Cisco ASA/FTD - Privilege Escalation
CVSS 6.7
CVE-2020-3455
HIGH
Cisco FXOS Software - Privilege Escalation
CVSS 7.8
CVE-2020-3299
MEDIUM
Cisco Firepower Threat Defense 6.0.0-6.3.0 - Unauthenticated File Policy Bypass via HTTP Chunked Response
CVSS 5.8
CVE-2020-15215
MEDIUM
Electron <11.0.0-beta.6, 10.1.2, 9.3.1 or 8.5.2 - Privilege Escalation
CVSS 5.6
CVE-2020-15174
HIGH
Electron <11.0.0-beta.1,10.0.1,9.3.0,8.5.1 - CSRF
CVSS 7.5
CVE-2020-16198
MEDIUM
Philips Clinical Collaboration Platform <12.2.1 - Info Disclosure
CVSS 5.0
CVE-2020-7320
MEDIUM
McAfee ENS <10.7.0 - Privilege Escalation
CVSS 6.7
CVE-2020-5379
MEDIUM
Dell Inspiron 7352 BIOS < A12 - Arbitrary Code Execution in System Management Mode via EFI_BOOT_SERVICES Overwrite
CVSS 6.8
CVE-2020-3315
MEDIUM
Cisco Firepower Threat Defense < 6.6.0 - Unauthenticated File Policy Bypass via Crafted HTTP Packets
CVSS 5.3
CVE-2020-3285
MEDIUM
Cisco Firepower Threat Defense - Auth Bypass
CVSS 5.8
CVE-2020-7277
MEDIUM
McAfee Endpoint Security <10.7.0 - Privilege Escalation
CVSS 6.8
CVE-2020-10598
MEDIUM
BD Pyxis MedStation ES <1.6.1 - Privilege Escalation
CVSS 6.1
CVE-2020-10887
CRITICAL
TP-Link Archer A7 Firmware <190726 - Firewall Bypass
CVSS 9.8
CVE-2020-6977
MEDIUM
GE Ultrasound Products - Desktop Environment Escape
CVSS 6.8
CVE-2019-13924
MEDIUM
SCALANCE X-200 and X-300 Firmware - Clickjacking via Missing X-Frame-Options Header
CVSS 5.4
CVE-2019-19278
MEDIUM
SINAMICS PERFECT HARMONY GH180 Drives - Unauthenticated RCE
CVSS 6.8
CVE-2019-13535
MEDIUM
Medtronic Valleylab FT10/LS10 <2.1.0/<1.20.2 - Info Disclosure
CVSS 4.6
CVE-2019-12697
HIGH
Cisco Firepower - Unauthenticated Malware and File Policy Bypass for RTF and RAR Files
CVSS 7.5
CVE-2019-12696
HIGH
Cisco Firepower - Unauthenticated Malware and File Policy Bypass for RTF and RAR Files
CVSS 7.5
CVE-2019-1975
MEDIUM
Cisco HyperFlex HX220c AF M5 < 3.5.2f - Cross-Frame Scripting via iframe
CVSS 6.1
CVE-2019-13516
HIGH
OSIsoft PI Web API < 2018 - Cross-Site Request Forgery
CVSS 8.8
Details
Vulnerabilities
675