Skip to main content

CWE archive

CWE-610 CVEs

Programmatic archive

239 CVEs tagged with CWE-61018 Critical, 95 High, 101 Medium, 25 Low, 0 Unrated.

CVE-2021-3779

Published Jun 28, 2022

A malicious MySQL server can request local file content from a client using ruby-mysql prior to version 2.10.0 without explicit authorization from the user. This issue was resolve…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-24241

Published Jun 2, 2022

ACEweb Online Portal 3.5.065 was discovered to contain an External Controlled File Path and Name vulnerability via the txtFilePath parameter in attachments.awp.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-20789

Published Apr 21, 2022

A vulnerability in the software upgrade process of Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified C…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-24854

Published Apr 14, 2022

Metabase is an open source business intelligence and analytics application. SQLite has an FDW-like feature called `ATTACH DATABASE`, which allows connecting multiple SQLite databa…

CVSS 8.0 · High
Vendor/product tagsBeta · best-effort

CVE-2021-39787

Published Mar 30, 2022

In SystemUI, there is a possible arbitrary Activity launch due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges neede…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-39765

Published Mar 30, 2022

In Gallery, there is a possible permission bypass due to a confused deputy. This could lead to local information disclosure with User execution privileges needed. User interaction…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-39707

Published Mar 16, 2022

In onReceive of AppRestrictionsFragment.java, there is a possible way to start a phone call without permissions due to a confused deputy. This could lead to local escalation of pr…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-39703

Published Mar 16, 2022

In updateState of UsbDeviceManager.java, there is a possible unauthorized access of files due to a confused deputy. This could lead to local escalation of privilege with no additi…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-39668

Published Feb 11, 2022

In onActivityViewReady of DetailDialog.kt, there is a possible Intent Redirect due to a confused deputy. This could lead to local escalation of privilege that allows actions perfo…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-39663

Published Feb 11, 2022

In openFileAndEnforcePathPermissionsHelper of MediaProvider.java, there is a possible bypass of a permissions check due to a confused deputy. This could lead to local escalation o…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-39626

Published Jan 14, 2022

In onAttach of ConnectedDeviceDashboardFragment.java, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege in Bluetooth…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-1035

Published Jan 14, 2022

In setLaunchIntent of BluetoothDevicePickerPreferenceController.java, there is a possible way to invoke an arbitrary broadcast receiver due to a confused deputy. This could lead t…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-43844

Published Dec 20, 2021

MSEdgeRedirect is a tool to redirect news, search, widgets, weather, and more to a user's default browser. MSEdgeRedirect versions before 0.5.0.1 are vulnerable to Remote Code Exe…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-1003

Published Dec 15, 2021

In adjustStreamVolume of AudioService.java, there is a possible way for unprivileged app to change audio stream volume due to a confused deputy. This could lead to local escalatio…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-44041

Published Dec 14, 2021

UiPath Assistant 21.4.4 will load and execute attacker controlled data from the file path supplied to the --dev-widget argument of the URI handler for uipath-assistant://. This al…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-43794

Published Dec 1, 2021

Discourse is an open source discussion platform. In affected versions an attacker can poison the cache for anonymous (i.e. not logged in) users, such that the users are shown a JS…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-43685

Published Dec 1, 2021

libretime hv3.0.0-alpha.10 is affected by a path manipulation vulnerability in /blob/master/legacy/application/modules/rest/controllers/ShowImageController.php through the rename…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-41244

Published Nov 15, 2021

Grafana is an open-source platform for monitoring and observability. In affected versions when the fine-grained access control beta feature is enabled and there is more than one o…

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-0708

Published Oct 22, 2021

In runDumpHeap of ActivityManagerShellCommand.java, there is a possible deletion of system files due to a confused deputy. This could lead to local escalation of privilege with no…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-25740

Published Sep 20, 2021

A security issue was discovered with Kubernetes that could enable users to send network traffic to locations they would otherwise not have access to via a confused deputy attack.

CVSS 3.1 · Low
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2020-8561

Published Sep 20, 2021

A security issue was discovered in Kubernetes where actors that control the responses of MutatingWebhookConfiguration or ValidatingWebhookConfiguration requests are able to redire…

CVSS 4.1 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2021-0593

Published Aug 17, 2021

In sendDevicePickedIntent of DevicePickerFragment.java, there is a possible way to invoke a privileged broadcast receiver due to a confused deputy. This could lead to local escala…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-0591

Published Aug 17, 2021

In sendReplyIntentToReceiver of BluetoothPermissionActivity.java, there is a possible way to invoke privileged broadcast receivers due to a confused deputy. This could lead to loc…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort
Showing 151-175 of 239 CVEsPage 7 of 10