CWE-829

Inclusion of Functionality from Untrusted Control Sphere

Parent: CWE-669 - Incorrect Resource Transfer Between Spheres

The product imports, requires, or includes executable functionality (such as a library) from a source that is outside of the intended control sphere.

230 vulnerabilities with CWE-829
CVE-2013-1945 LOW
ruby193 - Info Disclosure
CVSS 3.3
CVE-2012-4919 CRITICAL
Gallery Plugin1.4 for WordPress - RCE
CVSS 9.8
CVE-2010-2076 CRITICAL
Apache Cxf < 2.0.13 - Denial of Service
CVSS 9.8
CVE-2004-0285 CRITICAL
AllMyVisitors/Links/Guests - RCE
CVSS 9.8
CVE-2004-0030 CRITICAL
PHPGEDVIEW 2.61 - RCE
CVSS 9.8
Details
Vulnerabilities 230