CWE-641 · 13 kayıt
Improper Restriction of Names for Files and Other Resources
Bu sınıftaki CVE’ler
13 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
38İzleyin | CVE-2026-50023İstismar yok | yt-dlp: Dangerous file type creation via insufficient filename sanitization (Bypass of CVE-2024-38519)yt-dlp project · yt-dlp · CWE-641 | Kritik9,6 | — | %0,7 | 23 Haz 2026 |
35İzleyin | CVE-2026-25177Kavram kanıtı | Active Directory Domain Services Elevation of Privilege Vulnerabilitymicrosoft · windows 10 1607 · CWE-641 | Yüksek8,8 | — | %1,3 | 10 Mar 2026 |
33İzleyin | CVE-2025-47953İstismar yok | Microsoft Office Remote Code Execution Vulnerabilitymicrosoft · 365 apps · CWE-641 | Yüksek8,4 | — | %0,5 | 10 Haz 2025 |
31İzleyin | CVE-2025-21361İstismar yok | Microsoft Outlook Remote Code Execution Vulnerabilitymicrosoft · office · CWE-641 | Yüksek7,8 | — | %0,7 | 14 Oca 2025 |
31İzleyin | CVE-2025-21402İstismar yok | Microsoft Office OneNote Remote Code Execution Vulnerabilitymicrosoft · office · CWE-641 | Yüksek7,8 | — | %0,7 | 14 Oca 2025 |
31İzleyin | CVE-2025-47173İstismar yok | Microsoft Office Remote Code Execution Vulnerabilitymicrosoft · 365 apps · CWE-641 | Yüksek7,8 | — | %0,6 | 10 Haz 2025 |
31İzleyin | CVE-2026-50510İstismar yok | GitHub Copilot Remote Code Execution Vulnerabilitymicrosoft · github copilot · CWE-641 | Yüksek7,8 | — | %0,4 | 14 Tem 2026 |
28İzleyin | CVE-2023-0046İstismar yok | Improper Restriction of Names for Files and Other Resources in lirantal/daloradiusdaloradius · daloradius · CWE-641 | Yüksek7,2 | — | %1,0 | 4 Oca 2023 |
27İzleyin | CVE-2019-25623İstismar yok | Luminance Studio 2.17 Denial of Service via Malformed Inputpixarra · luminance studio · CWE-641 | Orta6,9 | — | %0,2 | 23 Mar 2026 |
26İzleyin | CVE-2024-30063İstismar yok | Windows Distributed File System (DFS) Remote Code Execution Vulnerabilitymicrosoft · windows 10 1507 · CWE-641 | Orta6,7 | — | %1,0 | 11 Haz 2024 |
26İzleyin | CVE-2024-47260İstismar yok | 51l3nc3, member of the AXIS OS Bug Bounty Program, has found that the VAPIX API mediaclip.cgi did not have a sufficient input validation allaxis communications ab · axis os · CWE-641 | Orta6,5 | — | %0,4 | 4 Mar 2025 |
21İzleyin | CVE-2022-36302İstismar yok | File path manipulation vulnerability in BF-OS version 3.00 up to and including 3.83 allows an attacker to modify the file path to access difbosch · bf-os · CWE-641 | Orta5,4 | — | %0,6 | 1 Ağu 2022 |
19İzleyin | CVE-2026-20282İstismar yok | Cisco Identity Services Engine Authenticated Write Vulnerabilitycisco · cisco identity services engine software · CWE-641 | Orta4,9 | — | %0,6 | 16 Eyl 2026 |
- CVE-2026-5002338İzleyin
yt-dlp: Dangerous file type creation via insufficient filename sanitization (Bypass of CVE-2024-38519)
KritikCVSS 9,6İstismar yokEPSS %1yt-dlp project · yt-dlp23 Haz 2026
- CVE-2026-2517735İzleyin
Active Directory Domain Services Elevation of Privilege Vulnerability
YüksekCVSS 8,8Kavram kanıtıEPSS %1microsoft · windows 10 160710 Mar 2026
- CVE-2025-4795333İzleyin
Microsoft Office Remote Code Execution Vulnerability
YüksekCVSS 8,4İstismar yokEPSS %1microsoft · 365 apps10 Haz 2025
- CVE-2025-2136131İzleyin
Microsoft Outlook Remote Code Execution Vulnerability
YüksekCVSS 7,8İstismar yokEPSS %1microsoft · office14 Oca 2025
- CVE-2025-2140231İzleyin
Microsoft Office OneNote Remote Code Execution Vulnerability
YüksekCVSS 7,8İstismar yokEPSS %1microsoft · office14 Oca 2025
- CVE-2025-4717331İzleyin
Microsoft Office Remote Code Execution Vulnerability
YüksekCVSS 7,8İstismar yokEPSS %1microsoft · 365 apps10 Haz 2025
- CVE-2026-5051031İzleyin
GitHub Copilot Remote Code Execution Vulnerability
YüksekCVSS 7,8İstismar yokEPSS %0microsoft · github copilot14 Tem 2026
- CVE-2023-004628İzleyin
Improper Restriction of Names for Files and Other Resources in lirantal/daloradius
YüksekCVSS 7,2İstismar yokEPSS %1daloradius · daloradius4 Oca 2023
- CVE-2019-2562327İzleyin
Luminance Studio 2.17 Denial of Service via Malformed Input
OrtaCVSS 6,9İstismar yokEPSS %0pixarra · luminance studio23 Mar 2026
- CVE-2024-3006326İzleyin
Windows Distributed File System (DFS) Remote Code Execution Vulnerability
OrtaCVSS 6,7İstismar yokEPSS %1microsoft · windows 10 150711 Haz 2024
- CVE-2024-4726026İzleyin
51l3nc3, member of the AXIS OS Bug Bounty Program, has found that the VAPIX API mediaclip.cgi did not have a sufficient input validation all
OrtaCVSS 6,5İstismar yokEPSS %0axis communications ab · axis os4 Mar 2025
- CVE-2022-3630221İzleyin
File path manipulation vulnerability in BF-OS version 3.00 up to and including 3.83 allows an attacker to modify the file path to access dif
OrtaCVSS 5,4İstismar yokEPSS %1bosch · bf-os1 Ağu 2022
- CVE-2026-2028219İzleyin
Cisco Identity Services Engine Authenticated Write Vulnerability
OrtaCVSS 4,9İstismar yokEPSS %1cisco · cisco identity services engine software16 Eyl 2026