Skip to content
Noroxi

CWE-767 · 4 records

Access to Critical Private Variable via Public Method

CVEs in this class

4 records

  • The implementation of atob in "Zabbix JS" allows to create a string with arbitrary content and use it to access internal properties of objec

    HighCVSS 8.8No exploitEPSS 1%

    zabbix · zabbixNov 26, 2024

  • CVE-2016-8380
    32Monitor

    The web server in Phoenix Contact ILC PLCs allows access to read and write PLC variables without authentication.

    HighCVSS 7.3Proof of conceptEPSS 11%

    phoenixcontact · ilc plcs firmwareApr 5, 2018

  • ARC Informatique PcVue Access to Critical Private Variable via Public Method

    HighCVSS 7.5No exploitEPSS 2%

    arcinfo · pcvueOct 12, 2020

  • The web interface of the affected devices is designed to hide the LDAP credentials even for administrative users.

    MediumCVSS 5.3No exploitEPSS 1%

    sharp corporation · multiple mfps (multifunction printers)Nov 26, 2024

All vulnerability classes