CWE-671 · 6 kayıt
Lack of Administrator Control over Security
Bu sınıftaki CVE’ler
6 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
36İzleyin | CVE-2025-24024İstismar yok | Mjolnir v1.9.0 accepts commands from any roommatrix-org · mjolnir · CWE-671 | Kritik9,1 | — | %0,6 | 21 Oca 2025 |
33İzleyin | CVE-2026-31985İstismar yok | Disabled and non-configurable TLS certificate validation in n2os-tui when connecting the Remote Collector to a Guardian or CMC, in Remote Collector before v26.2nozomi networks · remote collector · CWE-671 | Yüksek8,3 | — | %0,2 | 9 Tem 2026 |
29İzleyin | CVE-2018-13283İstismar yok | Lack of administrator control over security vulnerability in client.cgi in Synology SSL VPN Client before 1.2.5-0226 allows remote attackerssynology · ssl vpn client · CWE-671 | Yüksek7,4 | — | %1,4 | 1 Nis 2019 |
21İzleyin | CVE-2023-20115İstismar yok | A vulnerability in the SFTP server implementation for Cisco Nexus 3000 Series Switches and 9000 Series Switches in standalone NX-OS mode coucisco · nx-os · CWE-671 | Orta5,4 | — | %0,6 | 23 Ağu 2023 |
21İzleyin | CVE-2026-33389İstismar yok | Disabled and non-configurable certificate/host key validation in Smart Polling in Guardian/CMC before 26.3.0 and Arc before v2.7.0nozomi networks · guardian · CWE-671 | Orta5,3 | — | %0,2 | 8 Eyl 2026 |
17İzleyin | CVE-2022-29163İstismar yok | Bypass of password requirements when sharing a folder via the Circles app in Nextcloud Servernextcloud · nextcloud server · CWE-671 | Orta4,3 | — | %1,1 | 20 May 2022 |
- CVE-2025-2402436İzleyin
Mjolnir v1.9.0 accepts commands from any room
KritikCVSS 9,1İstismar yokEPSS %1matrix-org · mjolnir21 Oca 2025
- CVE-2026-3198533İzleyin
Disabled and non-configurable TLS certificate validation in n2os-tui when connecting the Remote Collector to a Guardian or CMC, in Remote Collector before v26.2
YüksekCVSS 8,3İstismar yokEPSS %0nozomi networks · remote collector9 Tem 2026
- CVE-2018-1328329İzleyin
Lack of administrator control over security vulnerability in client.cgi in Synology SSL VPN Client before 1.2.5-0226 allows remote attackers
YüksekCVSS 7,4İstismar yokEPSS %1synology · ssl vpn client1 Nis 2019
- CVE-2023-2011521İzleyin
A vulnerability in the SFTP server implementation for Cisco Nexus 3000 Series Switches and 9000 Series Switches in standalone NX-OS mode cou
OrtaCVSS 5,4İstismar yokEPSS %1cisco · nx-os23 Ağu 2023
- CVE-2026-3338921İzleyin
Disabled and non-configurable certificate/host key validation in Smart Polling in Guardian/CMC before 26.3.0 and Arc before v2.7.0
OrtaCVSS 5,3İstismar yokEPSS %0nozomi networks · guardian8 Eyl 2026
- CVE-2022-2916317İzleyin
Bypass of password requirements when sharing a folder via the Circles app in Nextcloud Server
OrtaCVSS 4,3İstismar yokEPSS %1nextcloud · nextcloud server20 May 2022