CWE-913

Improper Control of Dynamically-Managed Code Resources

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product does not properly restrict reading from or writing to dynamically-managed code resources such as variables, objects, classes, attributes, functions, or executable instructions or statements.

84 vulnerabilities with CWE-913
CVE-2022-44000 CRITICAL
BACKCLICK Professional <5.9.63 - RCE
CVSS 9.8
CVE-2022-3225 HIGH
GitHub budibase/budibase <1.3.20 - Info Disclosure
CVSS 8.8
CVE-2022-40635 MEDIUM
Crafter Studio - Command Injection
CVSS 6.4
CVE-2022-40634 MEDIUM
Crafter Studio - Command Injection
CVSS 6.4
CVE-2022-36067 CRITICAL
vm2 <3.9.11 - RCE
CVSS 10.0
CVE-2022-39051 MEDIUM
Template Toolkit - Code Injection
CVSS 6.8
CVE-2022-27889 MEDIUM
Palantir Foundry Multipass < 3.647.0 - Denial of Service
CVSS 5.3
CVE-2022-25355 MEDIUM
EC-CUBE <4.1.1 - Info Disclosure
CVSS 5.3
CVE-2022-25265 HIGH
Linux kernel <5.16.10 - Memory Corruption
CVSS 7.8
CVE-2021-23267 HIGH
Crafter Studio - Command Injection
CVSS 7.6
CVE-2021-42809 MEDIUM
Thales Sentinel Protection Installer - Code Injection
CVSS 6.5
CVE-2021-23262 MEDIUM
CrafterCMS 3.1.0 through 3.1.13 - Remote Code Execution via YAML Configuration
CVSS 4.2
CVE-2021-23259 MEDIUM
Groovy Script - RCE
CVSS 4.2
CVE-2021-23258 MEDIUM
Spring - RCE
CVSS 4.2
CVE-2021-32813 MEDIUM
Traefik <2.4.13 - Info Disclosure
CVSS 4.8
CVE-2021-22387 CRITICAL
Huawei Smartphone - RCE
CVSS 9.8
CVE-2021-32563 CRITICAL
Thunar <4.16.7-4.17.2 - RCE
CVSS 9.8
CVE-2021-21413 HIGH
isolated-vm <4.0.0 - Info Disclosure
CVSS 8.0
CVE-2021-26276 MEDIUM
GoDaddy node-config-shield <0.2.2 - Code Injection
CVSS 5.3
CVE-2020-15568 CRITICAL
TerraMaster TOS <4.1.29 - Code Injection
CVSS 9.8
CVE-2020-3419 MEDIUM
Cisco Webex Meetings - SSRF
CVSS 6.5
CVE-2020-25803 MEDIUM
Crafter CMS <3.0.27, <3.1.7 - Command Injection
CVSS 4.2
CVE-2020-25802 MEDIUM
Crafter CMS <3.0.27, <3.1.7 - Command Injection
CVSS 4.2
CVE-2020-15372 MEDIUM
Brocade Fabric OS <v8.2.2a1-9.0.0 - Privilege Escalation
CVSS 5.5
CVE-2020-4100 MEDIUM
HCL Verse for Android - Code Injection
CVSS 4.4
Details
Vulnerabilities 84