CWE-767 · 4 kayıt
Access to Critical Private Variable via Public Method
Bu sınıftaki CVE’ler
4 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
35İzleyin | CVE-2024-36463İstismar yok | The implementation of atob in "Zabbix JS" allows to create a string with arbitrary content and use it to access internal properties of objeczabbix · zabbix · CWE-767 | Yüksek8,8 | — | %0,8 | 26 Kas 2024 |
32İzleyin | CVE-2016-8380Kavram kanıtı | The web server in Phoenix Contact ILC PLCs allows access to read and write PLC variables without authentication.phoenixcontact · ilc plcs firmware · CWE-767 | Yüksek7,3 | — | %10,9 | 5 Nis 2018 |
31İzleyin | CVE-2020-26868İstismar yok | ARC Informatique PcVue Access to Critical Private Variable via Public Methodarcinfo · pcvue · CWE-767 | Yüksek7,5 | — | %2,2 | 12 Eki 2020 |
21İzleyin | CVE-2024-34162İstismar yok | The web interface of the affected devices is designed to hide the LDAP credentials even for administrative users.sharp corporation · multiple mfps (multifunction printers) · CWE-767 | Orta5,3 | — | %0,8 | 26 Kas 2024 |
- CVE-2024-3646335İzleyin
The implementation of atob in "Zabbix JS" allows to create a string with arbitrary content and use it to access internal properties of objec
YüksekCVSS 8,8İstismar yokEPSS %1zabbix · zabbix26 Kas 2024
- CVE-2016-838032İzleyin
The web server in Phoenix Contact ILC PLCs allows access to read and write PLC variables without authentication.
YüksekCVSS 7,3Kavram kanıtıEPSS %11phoenixcontact · ilc plcs firmware5 Nis 2018
- CVE-2020-2686831İzleyin
ARC Informatique PcVue Access to Critical Private Variable via Public Method
YüksekCVSS 7,5İstismar yokEPSS %2arcinfo · pcvue12 Eki 2020
- CVE-2024-3416221İzleyin
The web interface of the affected devices is designed to hide the LDAP credentials even for administrative users.
OrtaCVSS 5,3İstismar yokEPSS %1sharp corporation · multiple mfps (multifunction printers)26 Kas 2024