Перейти к содержимому
Noroxi

CWE-657 · 18 записей

Violation of Secure Design Principles

CVE этого класса

18 записей

  • CVE-2026-39888
    39Наблюдать

    PraisonAIAgents has a sandbox escape via exception frame traversal in `execute_code` (subprocess mode)

    КритическаяCVSS 9,9Эксплойта нетEPSS 1 %

    praison · praisonai8 апр. 2026 г.

  • CVE-2023-29320
    33Наблюдать

    ZDI-CAN-20712: Adobe Acrobat Blacklist Bypass Design flaw

    ВысокаяCVSS 7,8Эксплойта нетEPSS 5 %

    adobe · acrobat dc10 авг. 2023 г.

  • GHSA-8xw8-mmqv-frqq
    32Наблюдать

    fake-static allows converting any reference into a `'static` reference

    ВысокаяCVSS 8,0Эксплойта нет

    crates.io · fake-static25 авг. 2021 г.

  • CVE-2019-0061
    31Наблюдать

    Junos OS: Insecure management daemon (MGD) configuration may allow local privilege escalation

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    juniper · junos9 окт. 2019 г.

  • CVE-2026-48399
    30Наблюдать

    Adobe Campaign Classic (ACC) | Violation of Secure Design Principles (CWE-657)

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    adobe · campaign3 авг. 2026 г.

  • CVE-2023-52714
    30Наблюдать

    Vulnerability of defects introduced in the design process in the hwnff module.

    ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %

    huawei · emui7 апр. 2024 г.

  • CVE-2024-57957
    30Наблюдать

    Vulnerability of improper log information control in the UI framework module Impact: Successful exploitation of this vulnerability may affec

    ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %

    huawei · harmonyos6 февр. 2025 г.

  • CVE-2022-28244
    26Наблюдать

    Adobe Acrobat Reader DC CSP Bypass Leads To Privilege Escalation

    СредняяCVSS 6,3Эксплойта нетEPSS 4 %

    adobe · acrobat dc11 мая 2022 г.

  • CVE-2019-5478
    22Наблюдать

    A weakness was found in Encrypt Only boot mode in Zynq UltraScale+ devices.

    СредняяCVSS 5,5Эксплойта нетEPSS 0 %

    amd · zu11eg firmware3 сент. 2019 г.

  • GHSA-qm5v-pj64-852j
    22Наблюдать

    Passbolt Api Tabnabbing when opening URI with menu "Open URI in a new tab"

    СредняяCVSS 5,5Эксплойта нет

    Packagist · passbolt/passbolt_api20 мая 2024 г.

  • CVE-2017-6032
    21Наблюдать

    A Violation of Secure Design Principles issue was discovered in Schneider Electric Modicon Modbus Protocol.

    СредняяCVSS 5,3Эксплойта нетEPSS 2 %

    schneider-electric · modbus firmware29 июн. 2017 г.

  • CVE-2021-36061
    21Наблюдать

    Adobe Connect Violation of Secure Design Principles Vulnerability Can Lead To Editing Or Deleting Recordings

    СредняяCVSS 5,4Эксплойта нетEPSS 2 %

    adobe · connect1 сент. 2021 г.

  • CVE-2022-30683
    21Наблюдать

    AEM Violation of Secure Design Principles Security feature bypass

    СредняяCVSS 5,3Эксплойта нетEPSS 1 %

    adobe · experience manager16 сент. 2022 г.

  • CVE-2020-8133
    21Наблюдать

    A wrong generation of the passphrase for the encrypted block in Nextcloud Server 19.0.1 allowed an attacker to overwrite blocks in a file.

    СредняяCVSS 5,3Эксплойта нетEPSS 1 %

    nextcloud · nextcloud server9 нояб. 2020 г.

  • CVE-2019-15611
    19Наблюдать

    Violation of Secure Design Principles in the iOS App 2.23.0 causes the app to leak its login and token to other Nextcloud services when sear

    СредняяCVSS 4,9Эксплойта нетEPSS 1 %

    nextcloud · nextcloud4 февр. 2020 г.

  • CVE-2021-28583
    17Наблюдать

    Magento Commerce insecure storage of sensitive documentation

    СредняяCVSS 4,2Эксплойта нетEPSS 2 %

    magento · magento28 июн. 2021 г.

  • CVE-2025-54255
    16Наблюдать

    Acrobat Reader | Violation of Secure Design Principles (CWE-657)

    СредняяCVSS 4,0Эксплойта нетEPSS 0 %

    adobe · acrobat9 сент. 2025 г.

  • CVE-2021-44714
    14Наблюдать

    Adobe Acrobat Reader Missing Custom Protocols in Warning Message Prompts

    НизкаяCVSS 3,3Эксплойта нетEPSS 3 %

    adobe · acrobat dc14 янв. 2022 г.

Все классы уязвимостей