Перейти к содержимому
Noroxi

CWE-923 · 63 записей

Improper Restriction of Communication Channel to Intended Endpoints

CVE этого класса

63 записей

  • CVE-2019-17440
    40В плане

    PAN-OS on PA-7000 Series: Improper restriction of communication to Log Forwarding Card (LFC) allows root access

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    paloaltonetworks · pan-os20 дек. 2019 г.

  • CVE-2026-62836
    40В плане

    Azure SQL Managed Instance Elevation of Privilege Vulnerability

    КритическаяCVSS 10,0Эксплойта нетEPSS 1 %

    microsoft · azure sql managed instance6 авг. 2026 г.

  • CVE-2024-41889
    39Наблюдать

    Multiple Pimax products accept WebSocket connections from unintended endpoints.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    pimax · pitool5 авг. 2024 г.

  • CVE-2017-3891
    38Наблюдать

    In BlackBerry QNX Software Development Platform (SDP) 6.6.0, an elevation of privilege vulnerability in the default configuration of the QNX

    КритическаяCVSS 9,6Эксплойта нетEPSS 1 %

    blackberry · qnx software development platform14 нояб. 2017 г.

  • CVE-2026-34205
    38Наблюдать

    Home Assistant: Unauthenticated App (Add-on) Endpoints Exposed to Local Network via Host Network Mode

    КритическаяCVSS 9,6Эксплойта нетEPSS 0 %

    home-assistant · home assistant operating system27 мар. 2026 г.

  • CVE-2023-28078
    36Наблюдать

    Dell OS10 Networking Switches running 10.5.2.x and above contain a vulnerability with zeroMQ when VLT is configured.

    КритическаяCVSS 9,1Эксплойта нетEPSS 1 %

    dell · smartfabric os1015 февр. 2024 г.

  • CVE-2022-43916
    36Наблюдать

    IBM App Connect Enterprise Certified Container improper communications restriction

    КритическаяCVSS 9,1Эксплойта нетEPSS 0 %

    ibm · app connect enterprise certified container30 янв. 2025 г.

  • CVE-2025-20261
    35Наблюдать

    Cisco Integrated Management Controller Privilege Escalation Vulnerability

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    cisco · cisco unified computing system (managed)4 июн. 2025 г.

  • CVE-2025-61939
    34Наблюдать

    Columbia Weather Systems MicroServer Improper Restriction of Communication Channel to Intended Endpoints

    ВысокаяCVSS 8,7Эксплойта нетEPSS 0 %

    columbiaweather · weather microserver firmware7 янв. 2026 г.

  • CVE-2024-24974
    33Наблюдать

    The interactive service in OpenVPN 2.6.9 and earlier allows the OpenVPN service pipe to be accessed remotely, which allows a remote attacker

    ВысокаяCVSS 7,5Эксплойта нетEPSS 10 %

    openvpn · openvpn8 июл. 2024 г.

  • CVE-2025-29986
    33Наблюдать

    Dell Common Event Enabler, version(s) CEE 9.0.0.0, contain(s) an Improper Restriction of Communication Channel to Intended Endpoints vulnera

    ВысокаяCVSS 8,3Эксплойта нетEPSS 0 %

    dell · common event enabler8 апр. 2025 г.

  • CVE-2024-26131
    31Наблюдать

    Element Android Intent Redirection

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    element · element28 февр. 2024 г.

  • CVE-2026-23664
    30Наблюдать

    Azure IoT Explorer Information Disclosure Vulnerability

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    microsoft · azure iot explorer10 мар. 2026 г.

  • CVE-2024-34446
    30Наблюдать

    Mullvad VPN through 2024.1 on Android does not set a DNS server in the blocking state (after a hard failure to create a tunnel), and thus DN

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    3 мая 2024 г.

  • CVE-2024-47490
    30Наблюдать

    Junos OS Evolved: ACX 7000 Series: Receipt of specific transit MPLS packets causes resources to be exhausted

    ВысокаяCVSS 7,7Эксплойта нетEPSS 1 %

    juniper · junos os evolved11 окт. 2024 г.

  • CVE-2026-87734
    30Наблюдать

    An issue was discovered in the utcp package before 0.0.6 for OCaml.

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    ocaml · utcp9 сент. 2026 г.

  • CVE-2024-26013
    30Наблюдать

    A improper restriction of communication channel to intended endpoints vulnerability [CWE-923] in Fortinet FortiOS version 7.4.0 through 7.4.

    ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %

    fortinet · fortianalyzer8 апр. 2025 г.

  • CVE-2025-23178
    30Наблюдать

    Ribbon Communications - CWE-923: Improper Restriction of Communication Channel to Intended Endpoints

    ВысокаяCVSS 7,6Эксплойта нетEPSS 0 %

    ribbon communications · apollo 960829 апр. 2025 г.

  • CVE-2026-59841
    30Наблюдать

    A improper restriction of communication channel to intended endpoints vulnerability in Fortinet FortiSIEMWindowsAgent 7.4.0 through 7.4.1 ma

    ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %

    fortinet · fortisiem14 июл. 2026 г.

  • CVE-2025-36180
    30Наблюдать

    Inadequate Pod Communication Restrictions, affects watsonx.data

    ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %

    ibm · watsonx.data30 апр. 2026 г.

  • CVE-2024-47125
    30Наблюдать

    Improper Restriction of Communication Channel to Intended Endpoints in goTenna Pro

    ВысокаяCVSS 7,6Эксплойта нетEPSS 0 %

    gotenna · gotenna pro26 сент. 2024 г.

  • CVE-2026-23904
    29Наблюдать

    Apache Kyuubi: Unrestricted access via Kyuubi engine-ui proxy

    ВысокаяCVSS 7,3Эксплойта нетEPSS 1 %

    apache · kyuubi29 июл. 2026 г.

  • CVE-2024-43571
    29Наблюдать

    Sudo for Windows Spoofing Vulnerability

    ВысокаяCVSS 7,3Эксплойта нетEPSS 1 %

    microsoft · windows 11 24h28 окт. 2024 г.

  • CVE-2024-6222
    29Наблюдать

    In Docker Desktop before v4.29.0 an attacker who has gained access to the Docker Desktop VM through a container breakout can further escape to the host by passi

    ВысокаяCVSS 7,3Эксплойта нетEPSS 1 %

    docker · desktop9 июл. 2024 г.

  • CVE-2026-13608
    29Наблюдать

    OpenLDAP SASL authentication bypass

    ВысокаяCVSS 7,4Эксплойта нетEPSS 0 %

    haxx · curl6 сент. 2026 г.

Все классы уязвимостей