Skip to content
Noroxi

CWE-249 · 6 records

DEPRECATED: Often Misused: Path Manipulation

CVEs in this class

6 records

  • Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 are vulnerable to authentication bypass due to a hard-coded password

    CriticalCVSS 9.8No exploitEPSS 36%

    crestron · am-100 firmwareApr 30, 2019

  • Path transversal in some Intel(R) NUC P14E Laptop Element Audio Install Package software before version 156 for Windows may allow an authent

    HighCVSS 7.8No exploitEPSS 0%

    intel · audio install packageNov 14, 2023

  • Path transversal in some Intel(R) NUC Kits NUC7i3DN, NUC7i5DN, NUC7i7DN HDMI firmware update tool software before version 1.79.1.1 may allow

    HighCVSS 7.8No exploitEPSS 0%

    intel · hdmi firmwareNov 14, 2023

  • Path transversal in some Intel(R) VROC software before version 8.0.8.1001 may allow an authenticated user to potentially enable escalation o

    HighCVSS 7.8No exploitEPSS 0%

    intel · virtual raid on cpuFeb 14, 2024

  • Path transversal in some Intel(R) NUC Kits & Mini PCs - NUC8i7HVK & NUC8HNK USB Type C power delivery controller installatio software before

    HighCVSS 7.3No exploitEPSS 0%

    intel · usb type c power delivery controllerNov 14, 2023

  • Path transversal in some Intel(R) NUC Uniwill Service Driver for Intel(R) NUC M15 Laptop Kits - LAPRC510 & LAPRC710 Uniwill Service Driver i

    HighCVSS 7.3No exploitEPSS 0%

    intel · nuc uniwill service driverNov 14, 2023

All vulnerability classes