VYPR

CWE-669

Incorrect Resource Transfer Between Spheres

ClassDraft

Description

The product does not properly transfer a resource/behavior to another sphere, or improperly imports a resource/behavior from another sphere, in a manner that provides unintended control over that resource.

Hierarchy (View 1000)

CVEs mapped to this weakness (101)

page 1 of 6
  • CVE-2026-31431HigKEVApr 22, 2026
    risk 0.66cvss 7.8epss 1.00

    In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - Revert to operating out-of-place This mostly reverts commit 72548b093ee3 except for the copying of the associated data. There is no benefit in operating in-place in algif_aead since the…

  • CVE-2021-30120CriJul 9, 2021
    risk 0.65cvss 9.9epss 0.06

    Kaseya VSA before 9.5.7 allows attackers to bypass the 2FA requirement. The need to use 2FA for authentication in enforce client-side instead of server-side and can be bypassed using a local proxy. Thus rendering 2FA useless. Detailed description --- During the login process,…

  • CVE-2020-24683CriDec 22, 2020
    risk 0.64cvss 9.8epss 0.01

    The affected versions of S+ Operations (version 2.1 SP1 and earlier) used an approach for user authentication which relies on validation at the client node (client-side authentication). This is not as secure as having the server validate a client application before allowing a…

  • CVE-2020-5800CriDec 7, 2020
    risk 0.64cvss 9.8epss 0.02

    The Eat Spray Love mobile app for both iOS and Android contains logic that allows users to bypass authentication and retrieve or modify information that they would not normally have access to.

  • CVE-2020-15892CriJul 22, 2020
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered in apply.cgi on D-Link DAP-1520 devices before 1.10b04Beta02. Whenever a user performs a login action from the web interface, the request values are being forwarded to the ssi binary. On the login page, the web interface restricts the password input field…

  • CVE-2019-13025CriOct 2, 2019
    risk 0.64cvss 9.8epss 0.03

    Compal CH7465LG CH7465LG-NCIP-6.12.18.24-5p8-NOSH devices have Incorrect Access Control because of Improper Input Validation. The attacker can send a maliciously modified POST (HTTP) request containing shell commands, which will be executed on the device, to an backend API…

  • CVE-2016-5062CriSep 29, 2016
    risk 0.64cvss 9.8epss 0.04

    The web server in Aternity before 9.0.1 does not require authentication for getMBeansFromURL loading of Java MBeans, which allows remote attackers to execute arbitrary Java code by registering MBeans.

  • CVE-2022-20658CriJan 14, 2022
    risk 0.63cvss 9.6epss 0.01

    A vulnerability in the web-based management interface of Cisco Unified Contact Center Management Portal (Unified CCMP) and Cisco Unified Contact Center Domain Manager (Unified CCDM) could allow an authenticated, remote attacker to elevate their privileges to Administrator. This…

  • CVE-2021-22900HigKEVMay 27, 2021
    risk 0.60cvss 7.2epss 0.14

    A vulnerability allowed multiple unrestricted uploads in Pulse Connect Secure before 9.1R11.4 that could lead to an authenticated administrator to perform a file write via a maliciously crafted archive upload in the administrator web interface.

  • CVE-2023-31114CriJun 7, 2023
    risk 0.59cvss 9.1epss 0.01

    An issue was discovered in the Shannon RCS component in Samsung Exynos Modem 5123 and 5300. Incorrect resource transfer between spheres can cause unintended querying of the SIM status via a crafted application.

  • CVE-2026-25253HigFeb 1, 2026
    risk 0.58cvss 8.8epss 0.08

    OpenClaw (aka clawdbot or Moltbot) before 2026.1.29 obtains a gatewayUrl value from a query string and automatically makes a WebSocket connection without prompting, sending a token value.

  • CVE-2025-41660HigMar 24, 2026
    risk 0.57cvss 8.8epss 0.00

    A low-privileged remote attacker may be able to replace the boot application of the CODESYS Control runtime system, enabling unauthorized code execution.

  • CVE-2025-67895CriDec 17, 2025
    risk 0.57cvss 9.8epss 0.01

    Edge3 Worker RPC RCE on Airflow 2. This issue affects Apache Airflow Providers Edge3: before 2.0.0 - and only if you installed and configured it on Airflow 2. The Edge3 provider support in Airflow 2 has been always development-only and not officially released, however if you…

  • CVE-2021-45891HigApr 5, 2022
    risk 0.57cvss 8.8epss 0.01

    An issue was discovered in Softwarebuero Zauner ARC 4.2.0.4., that allows attackers to escalate privileges within the application, since all permission checks are done client-side, not server-side.

  • CVE-2021-24602HigAug 23, 2021
    risk 0.57cvss 8.8epss 0.02

    The HM Multiple Roles WordPress plugin before 1.3 does not have any access control to prevent low privilege users to set themselves as admin via their profile page

  • CVE-2020-25917HigDec 26, 2020
    risk 0.57cvss 8.8epss 0.01

    Stratodesk NoTouch Center before 4.4.68 is affected by: Incorrect Access Control. A low privileged user on the platform, for example a user with "helpdesk" privileges, can perform privileged operations including adding a new administrator to the platform via the…

  • CVE-2019-13266HigAug 27, 2019
    risk 0.57cvss 8.8epss 0.01

    TP-Link Archer C3200 V1 and Archer C2 V1 devices have Insufficient Compartmentalization between a host network and a guest network that are established by the same device. A DHCP Request is sent to the router with a certain Transaction ID field. Following the DHCP protocol, the…

  • CVE-2019-13263HigAug 27, 2019
    risk 0.57cvss 8.8epss 0.01

    D-link DIR-825AC G1 devices have Insufficient Compartmentalization between a host network and a guest network that are established by the same device. A DHCP Request is sent to the router with a certain Transaction ID field. Following the DHCP protocol, the router responds with…

  • CVE-2019-11875HigMay 24, 2019
    risk 0.57cvss 8.8epss 0.02

    In AutomateAppCore.dll in Blue Prism Robotic Process Automation 6.4.0.8445, a vulnerability in access control can be exploited to escalate privileges. The vulnerability allows for abusing the application for fraud or unauthorized access to certain information. The attack…

  • CVE-2025-41645HigMay 13, 2025
    risk 0.56cvss 8.6epss 0.00

    An unauthenticated remote attacker could use a demo account of the portal to hijack devices that were created in that account by mistake.