Skip to main content

CWE archive

CWE-269 CVEs

Programmatic archive

2,948 CVEs tagged with CWE-269374 Critical, 1,769 High, 727 Medium, 77 Low, 1 Unrated.

CVE-2015-0192

Published Jul 2, 2015

Unspecified vulnerability in IBM Java 8 before SR1, 7 R1 before SR2 FP11, 7 before SR9, 6 R1 before SR8 FP4, 6 before SR16 FP4, and 5.0 before SR16 FP10 allows remote attackers to…

CVSS 9.8 · Critical

CVE-2014-9193

Published Dec 20, 2014

Innominate mGuard with firmware before 7.6.6 and 8.x before 8.1.4 allows remote authenticated admins to obtain root privileges by changing a PPP configuration setting.

CVSS 8.5 · High
Vendor/product tagsBeta · best-effort

CVE-2014-0204

Published Nov 3, 2014

OpenStack Identity (Keystone) before 2014.1.1 does not properly handle when a role is assigned to a group that has the same ID as a user, which allows remote authenticated users t…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-5207

Published Aug 18, 2014

fs/namespace.c in the Linux kernel through 3.16.1 does not properly restrict clearing MNT_NODEV, MNT_NOSUID, and MNT_NOEXEC and changing MNT_ATIME_MASK during a remount of a bind…

CVSS 6.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-5206

Published Aug 18, 2014

The do_remount function in fs/namespace.c in the Linux kernel through 3.16.1 does not maintain the MNT_LOCK_READONLY bit across a remount of a bind mount, which allows local users…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2014-3534

Published Aug 1, 2014

arch/s390/kernel/ptrace.c in the Linux kernel before 3.15.8 on the s390 platform does not properly restrict address-space control operations in PTRACE_POKEUSR_AREA requests, which…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2014-3476

Published Jun 17, 2014

OpenStack Identity (Keystone) before 2013.2.4, 2014.1 before 2014.1.2, and Juno before Juno-2 does not properly handle chained delegation, which allows remote authenticated users…

CVSS 6.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-0185

Published May 6, 2014

sapi/fpm/fpm/fpm_unix.c in the FastCGI Process Manager (FPM) in PHP before 5.4.28 and 5.5.x before 5.5.12 uses 0666 permissions for the UNIX socket, which allows local users to ga…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort
Showing 2,901-2,925 of 2,948 CVEsPage 117 of 118