CWE-913

Improper Control of Dynamically-Managed Code Resources

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product does not properly restrict reading from or writing to dynamically-managed code resources such as variables, objects, classes, attributes, functions, or executable instructions or statements.

84 vulnerabilities with CWE-913
CVE-2019-15006 MEDIUM
Confluence Server/DC - SSRF
CVSS 6.5
CVE-2019-1617 HIGH
Cisco Nx-os < 9.2\(2\) - Denial of Service
CVSS 7.4
CVE-2019-1595 HIGH
Cisco NX-OS Software - DoS
CVSS 7.4
CVE-2018-19836 MEDIUM
Metinfo 6.1.3 - Info Disclosure
CVSS 6.1
CVE-2017-3202 CRITICAL
Exadel Flamingo - Insecure Deserialization
CVSS 9.8
CVE-2017-3200 HIGH
Graniteds - Insecure Deserialization
CVSS 8.1
CVE-2014-9852 CRITICAL
ImageMagick - Use After Free
CVSS 9.8
CVE-2012-2055 HIGH
GitHub Enterprise <20120304 - Info Disclosure
CVSS 7.5
CVE-2006-7079 CRITICAL
Exv2 Content Management System < 2.0.4.3 - Path Traversal
CVSS 9.8
Details
Vulnerabilities 84