Skip to content
Noroxi

CWE-650 · 12 records

Trusting HTTP Permission Methods on the Server Side

CVEs in this class

12 records

  • IBM Security Verify Access information disclosure

    CriticalCVSS 10.0No exploitEPSS 1%

    ibm · application gatewayApr 4, 2024

  • IBM Aspera Faspex bypass security

    HighCVSS 8.1No exploitEPSS 0%

    ibm · aspera faspexSep 5, 2024

  • IBM WebSphere Application Server information disclosure

    HighCVSS 7.5No exploitEPSS 0%

    ibm · websphere application serverAug 7, 2025

  • IBM Aspera Faspex bypass security

    HighCVSS 7.1No exploitEPSS 0%

    ibm · aspera faspexSep 5, 2024

  • Dell Avamar, versions prior to 19.10 SP1 with patch 338904, contains a Trusting HTTP Permission Methods on the Server-Side vulnerability in

    MediumCVSS 6.5No exploitEPSS 0%

    dell · avamarAug 4, 2025

  • IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities

    MediumCVSS 5.9No exploitEPSS 0%

    ibm · websphere application serverSep 14, 2026

  • Insecure Methods Vulnerability

    MediumCVSS 5.3No exploitEPSS 1%

    solarwinds · security event managerNov 23, 2022

  • IBM PowerSC weak security

    MediumCVSS 5.3No exploitEPSS 0%

    ibm · powerscFeb 1, 2024

  • HTTP Verb Tampering in SAP S/4 HANA(Manage Bank Statements)

    MediumCVSS 5.3No exploitEPSS 0%

    sap · s\/4 hanaOct 8, 2024

  • IRIS has a Cross-Site Request Forgery (CSRF) issue

    MediumCVSS 4.3No exploitEPSS 0%

    dfir-iris · iris-webJun 4, 2026

  • IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities

    MediumCVSS 4.3No exploitEPSS 0%

    ibm · websphere application serverSep 18, 2026

  • zhinianboke xianyu-auto-reply review approve trusting http permission methods on the server side

    LowCVSS 2.1No exploitEPSS 0%

    zhinianboke · xianyu-auto-replyJul 14, 2026

All vulnerability classes