CWE-749

Low likelihood

Exposed Dangerous Method or Function

Parent: CWE-284 - Improper Access Control

The product provides an Applications Programming Interface (API) or similar interface for interaction with external actors, but the interface includes a dangerous method or function that is not properly restricted.

151 vulnerabilities with CWE-749
CVE-2024-55920 MEDIUM
Typo3 < 10.4.48 - CSRF
CVSS 4.3
CVE-2024-55894 MEDIUM
Typo3 < 10.4.48 - CSRF
CVSS 4.3
CVE-2024-55893 MEDIUM
Typo3 < 10.4.48 - CSRF
CVSS 4.3
CVE-2024-13242 CRITICAL
Drupal Swift Mailer - SSRF
CVSS 9.1
CVE-2024-51992 MEDIUM
Orchid <14.42.x - RCE
CVSS 4.1
CVE-2024-47005 HIGH
Sharp/Toshiba Tec MFP - Info Disclosure
CVSS 8.1
CVE-2024-4739 MEDIUM
MXsecurity <v1.1.0 - Info Disclosure
CVSS 5.3
CVE-2024-6510 HIGH
AVG Internet Security <24 - Privilege Escalation
CVSS 7.8
CVE-2024-6689 HIGH
baramundi Management Agent <23.1.172.0 - Privilege Escalation
CVSS 7.8
CVE-2024-35209 MEDIUM
SINEC Traffic Analyzer <V1.2 - Info Disclosure
CVSS 6.2
CVE-2024-5299 HIGH
Dlink D-view 8 - Remote Code Execution
CVSS 8.8
CVE-2024-5298 HIGH
Dlink D-view 8 - Remote Code Execution
CVSS 8.8
CVE-2024-32764 CRITICAL
myQNAPcloud Link <2.4.51 - Privilege Escalation
CVSS 9.9
CVE-2024-27261 MEDIUM
IBM Storage Defender - Resiliency Service <2.0.3 - Privilege Escala...
CVSS 6.4
CVE-2024-29880 MEDIUM
JetBrains TeamCity <2023.11 - Privilege Escalation
CVSS 4.2
CVE-2024-27444 CRITICAL
LangChain <0.1.8 - RCE
CVSS 9.8
CVE-2024-25675 CRITICAL
MISP <2.4.184 - Info Disclosure
CVSS 9.8
CVE-2023-39470 HIGH
Papercut NG < 22.1.1 - Remote Code Execution
CVSS 7.2
CVE-2023-51584 HIGH
Voltronic Power ViewPower - RCE
CVSS 8.8
CVE-2023-51583 CRITICAL
Voltronic Power ViewPower - RCE
CVSS 9.8
CVE-2023-51582 CRITICAL
Voltronic Power ViewPower - RCE
CVSS 9.8
CVE-2023-51581 CRITICAL
Voltronic Power ViewPower - RCE
CVSS 9.8
CVE-2023-51578 HIGH
Voltronic Power ViewPower - DoS
CVSS 7.5
CVE-2023-51577 HIGH
Voltronic Power ViewPower - Privilege Escalation
CVSS 7.8
CVE-2023-51575 CRITICAL
Voltronic Power ViewPower - RCE
CVSS 9.8
Details
Vulnerabilities 151
Exploit Likelihood Low