CWE-249 · 6 records
DEPRECATED: Often Misused: Path Manipulation
CVEs in this class
6 records
| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
50Plan | CVE-2019-3932No exploit | Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 are vulnerable to authentication bypass due to a hard-coded password crestron · am-100 firmware · CWE-249 | Critical9.8 | — | 36.3% | Apr 30, 2019 |
31Monitor | CVE-2023-33878No exploit | Path transversal in some Intel(R) NUC P14E Laptop Element Audio Install Package software before version 156 for Windows may allow an authentintel · audio install package · CWE-249 | High7.8 | — | 0.2% | Nov 14, 2023 |
31Monitor | CVE-2022-27229No exploit | Path transversal in some Intel(R) NUC Kits NUC7i3DN, NUC7i5DN, NUC7i7DN HDMI firmware update tool software before version 1.79.1.1 may allowintel · hdmi firmware · CWE-249 | High7.8 | — | 0.2% | Nov 14, 2023 |
31Monitor | CVE-2023-35003No exploit | Path transversal in some Intel(R) VROC software before version 8.0.8.1001 may allow an authenticated user to potentially enable escalation ointel · virtual raid on cpu · CWE-249 | High7.8 | — | 0.2% | Feb 14, 2024 |
29Monitor | CVE-2023-32655No exploit | Path transversal in some Intel(R) NUC Kits & Mini PCs - NUC8i7HVK & NUC8HNK USB Type C power delivery controller installatio software beforeintel · usb type c power delivery controller · CWE-249 | High7.3 | — | 0.2% | Nov 14, 2023 |
29Monitor | CVE-2023-32278No exploit | Path transversal in some Intel(R) NUC Uniwill Service Driver for Intel(R) NUC M15 Laptop Kits - LAPRC510 & LAPRC710 Uniwill Service Driver iintel · nuc uniwill service driver · CWE-249 | High7.3 | — | 0.2% | Nov 14, 2023 |
- CVE-2019-393250Plan
Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 are vulnerable to authentication bypass due to a hard-coded password
CriticalCVSS 9.8No exploitEPSS 36%crestron · am-100 firmwareApr 30, 2019
- CVE-2023-3387831Monitor
Path transversal in some Intel(R) NUC P14E Laptop Element Audio Install Package software before version 156 for Windows may allow an authent
HighCVSS 7.8No exploitEPSS 0%intel · audio install packageNov 14, 2023
- CVE-2022-2722931Monitor
Path transversal in some Intel(R) NUC Kits NUC7i3DN, NUC7i5DN, NUC7i7DN HDMI firmware update tool software before version 1.79.1.1 may allow
HighCVSS 7.8No exploitEPSS 0%intel · hdmi firmwareNov 14, 2023
- CVE-2023-3500331Monitor
Path transversal in some Intel(R) VROC software before version 8.0.8.1001 may allow an authenticated user to potentially enable escalation o
HighCVSS 7.8No exploitEPSS 0%intel · virtual raid on cpuFeb 14, 2024
- CVE-2023-3265529Monitor
Path transversal in some Intel(R) NUC Kits & Mini PCs - NUC8i7HVK & NUC8HNK USB Type C power delivery controller installatio software before
HighCVSS 7.3No exploitEPSS 0%intel · usb type c power delivery controllerNov 14, 2023
- CVE-2023-3227829Monitor
Path transversal in some Intel(R) NUC Uniwill Service Driver for Intel(R) NUC M15 Laptop Kits - LAPRC510 & LAPRC710 Uniwill Service Driver i
HighCVSS 7.3No exploitEPSS 0%intel · nuc uniwill service driverNov 14, 2023