CWE-914 · 3 kayıt
Improper Control of Dynamically-Identified Variables
Bu sınıftaki CVE’ler
3 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
34İzleyin | CVE-2024-54198İstismar yok | Information Disclosure vulnerability through Remote Function Call (RFC) in SAP NetWeaver Application Server ABAPsap_se · sap netweaver application server abap · CWE-914 | Yüksek8,5 | — | %0,6 | 9 Ara 2024 |
32İzleyin | CVE-2024-24914İstismar yok | Authenticated Gaia users can inject code or commands by global variables through special HTTP requests.checkpoint · gaia os · CWE-914 | Yüksek8,0 | — | %0,4 | 7 Kas 2024 |
30İzleyin | CVE-2023-33175İstismar yok | ToUI allows user-specific variables to be shared between userstoui project · toui · CWE-914 | Yüksek7,5 | — | %0,7 | 30 May 2023 |
- CVE-2024-5419834İzleyin
Information Disclosure vulnerability through Remote Function Call (RFC) in SAP NetWeaver Application Server ABAP
YüksekCVSS 8,5İstismar yokEPSS %1sap_se · sap netweaver application server abap9 Ara 2024
- CVE-2024-2491432İzleyin
Authenticated Gaia users can inject code or commands by global variables through special HTTP requests.
YüksekCVSS 8,0İstismar yokEPSS %0checkpoint · gaia os7 Kas 2024
- CVE-2023-3317530İzleyin
ToUI allows user-specific variables to be shared between users
YüksekCVSS 7,5İstismar yokEPSS %1toui project · toui30 May 2023