Перейти к содержимому
Noroxi

CWE-451 · 380 записей

User Interface (UI) Misrepresentation of Critical Information

CVE этого класса

380 записей

  • CVE-2024-38112
    85Срочно

    Windows MSHTML Platform Spoofing Vulnerability

    ВысокаяCVSS 7,5KEVГотовый эксплойтEPSS 84 %

    microsoft · windows 10 15079 июл. 2024 г.

  • CVE-2024-43461
    81Срочно

    Windows MSHTML Platform Spoofing Vulnerability

    ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 54 %

    microsoft · windows 10 150710 сент. 2024 г.

  • CVE-2026-0907
    42В плане

    Incorrect security UI in Split View in Google Chrome prior to 144.0.7559.59 allowed a remote attacker to perform UI spoofing via a crafted H

    КритическаяCVSS 9,8Эксплойта нетEPSS 9 %

    google · chrome20 янв. 2026 г.

  • CVE-2025-9491
    39Наблюдать

    Microsoft Windows LNK File UI Misrepresentation Remote Code Execution Vulnerability

    СредняяCVSS 4,6Proof of conceptEPSS 69 %

    microsoft · windows 11 23h226 авг. 2025 г.

  • CVE-2026-2634
    39Наблюдать

    Spoofed web content presented under trusted domains using scripted navigation on Firefox iOS

    КритическаяCVSS 9,8Эксплойта нетEPSS 0 %

    mozilla · firefox24 февр. 2026 г.

  • CVE-2025-8043
    39Наблюдать

    Incorrect URL truncation

    КритическаяCVSS 9,8Эксплойта нетEPSS 0 %

    mozilla · firefox22 июл. 2025 г.

  • CVE-2026-0906
    39Наблюдать

    Incorrect security UI in Google Chrome on Android prior to 144.0.7559.59 allowed a remote attacker to spoof the contents of the Omnibox (UR

    КритическаяCVSS 9,8Эксплойта нетEPSS 0 %

    google · chrome20 янв. 2026 г.

  • CVE-2021-41598
    35Наблюдать

    UI misrepresentation of granted permissions in GitHub Enterprise Server leading to unauthorized access to user

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    github · enterprise server25 янв. 2022 г.

  • CVE-2021-22866
    35Наблюдать

    UI misrepresentation of granted permissions in GitHub Enterprise Server leading to unauthorized access to user resources

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    github · enterprise server14 мая 2021 г.

  • CVE-2024-0750
    35Наблюдать

    A bug in popup notifications delay calculation could have made it possible for an attacker to trick a user into granting permissions.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    mozilla · firefox23 янв. 2024 г.

  • CVE-2020-9236
    35Наблюдать

    There is an improper interface design vulnerability in Huawei product.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    huawei · fusioncompute27 дек. 2024 г.

  • CVE-2026-11175
    35Наблюдать

    Incorrect security UI in Messages in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to perform UI spoofing via a

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    google · chrome4 июн. 2026 г.

  • CVE-2026-11172
    35Наблюдать

    Incorrect security UI in Contact Picker in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to perform UI spoofing

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    google · chrome4 июн. 2026 г.

  • CVE-2026-53829
    34Наблюдать

    OpenClaw < 2026.5.18 - Command Truncation in Exec Approval Display

    ВысокаяCVSS 8,5Эксплойта нетEPSS 0 %

    openclaw · openclaw12 июн. 2026 г.

  • CVE-2019-25718
    34Наблюдать

    Dräger Infinity Explorer C700 Privilege Escalation via Kiosk Mode Bypass

    ВысокаяCVSS 8,6Эксплойта нетEPSS 0 %

    draeger · infinity explorer c700 firmware1 июн. 2026 г.

  • CVE-2024-49040
    33Наблюдать

    Microsoft Exchange Server Spoofing Vulnerability

    ВысокаяCVSS 7,5Эксплойта нетEPSS 8 %

    microsoft · exchange server12 нояб. 2024 г.

  • CVE-2024-52276
    32Наблюдать

    PDF Document Spoofing in DocuSign

    ВысокаяCVSS 8,2Эксплойта нетEPSS 0 %

    docusign · docusign4 дек. 2024 г.

  • CVE-2026-79011
    32Наблюдать

    UI misrepresentation in Browser in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass sy

    ВысокаяCVSS 8,1Эксплойта нетEPSS 0 %

    google · chrome25 авг. 2026 г.

  • CVE-2024-52269
    32Наблюдать

    AI Assistant PDF Document Spoofing in DocuSign

    ВысокаяCVSS 8,2Эксплойта нетEPSS 0 %

    docusign · docusign4 дек. 2024 г.

  • CVE-2025-11720
    32Наблюдать

    Spoofing risk in Android custom tabs

    ВысокаяCVSS 8,1Эксплойта нетEPSS 0 %

    mozilla · firefox14 окт. 2025 г.

  • CVE-2024-52271
    32Наблюдать

    PDF Document Spoofing in Documenso

    ВысокаяCVSS 8,2Эксплойта нетEPSS 0 %

    documenso · documenso5 дек. 2024 г.

  • CVE-2024-52277
    32Наблюдать

    PDF Document Spoofing in DocuSeal

    ВысокаяCVSS 8,2Эксплойта нетEPSS 0 %

    docuseal · docuseal4 дек. 2024 г.

  • CVE-2024-52270
    32Наблюдать

    PDF Document Spoofing in DropBox Sign(HelloSign)

    ВысокаяCVSS 8,2Эксплойта нетEPSS 0 %

    dropbox(hellosign) · dropbox sign5 дек. 2024 г.

  • CVE-2024-38197
    31Наблюдать

    Microsoft Teams for iOS Spoofing Vulnerability

    СредняяCVSS 6,5Эксплойта нетEPSS 16 %

    microsoft · teams13 авг. 2024 г.

  • CVE-2022-23646
    31Наблюдать

    Improper CSP in Image Optimization API for Next.js

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    vercel · next.js17 февр. 2022 г.

Все классы уязвимостей