VYPR

CWE-669

Incorrect Resource Transfer Between Spheres

ClassDraft

Description

The product does not properly transfer a resource/behavior to another sphere, or improperly imports a resource/behavior from another sphere, in a manner that provides unintended control over that resource.

Hierarchy (View 1000)

CVEs mapped to this weakness (101)

page 2 of 6
  • CVE-2025-34158HigAug 21, 2025
    risk 0.55cvss 8.5epss 0.01

    Plex Media Server (PMS) 1.41.7.x through 1.42.0.x before 1.42.1 is affected by incorrect resource transfer between spheres because /myplex/account provides the credentials of the server owner (and a /api/resources call reveals other servers accessible by that server owner).

  • CVE-2020-1048HigMay 21, 2020
    risk 0.55cvss 7.8epss 0.17

    An elevation of privilege vulnerability exists when the Windows Print Spooler service improperly allows arbitrary writing to the file system, aka 'Windows Print Spooler Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1070.

  • CVE-2026-14151HigJun 30, 2026
    risk 0.54cvss 8.3epss 0.00

    Inappropriate implementation in AI in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Low)

  • CVE-2022-30236HigJun 2, 2022
    risk 0.53cvss 8.2epss 0.01

    A CWE-669: Incorrect Resource Transfer Between Spheres vulnerability exists that could allow unauthorized access when an attacker uses cross-domain attacks. Affected Products: Wiser Smart, EER21000 & EER21001 (V4.5 and prior)

  • CVE-2021-21531HigApr 30, 2021
    risk 0.53cvss 8.1epss 0.01

    Dell Unisphere for PowerMax versions prior to 9.2.1.6 contain an Authorization Bypass Vulnerability. A local authenticated malicious user with monitor role may exploit this vulnerability to perform unauthorized actions.

  • CVE-2021-20411HigFeb 12, 2021
    risk 0.53cvss 8.1epss 0.00

    IBM Security Verify Information Queue 1.0.6 and 1.0.7 could allow a user to impersonate another user on the system due to incorrectly updating the session identifier. IBM X-Force ID: 198191.

  • CVE-2019-11770HigJun 14, 2019
    risk 0.53cvss 8.1epss 0.01

    In Eclipse Buildship versions prior to 3.1.1, the build files indicate that this project is resolving dependencies over HTTP instead of HTTPS. Any of these artifacts could have been MITM to maliciously compromise them and infect the build artifacts that were produced.…

  • CVE-2019-12728HigJun 4, 2019
    risk 0.53cvss 8.1epss 0.01

    Grails before 3.3.10 used cleartext HTTP to resolve the SDKMan notification service. NOTE: users' apps were not resolving dependencies over cleartext HTTP.

  • CVE-2019-10248HigApr 22, 2019
    risk 0.53cvss 8.1epss 0.00

    Eclipse Vorto versions prior to 0.11 resolved Maven build artifacts for the Xtext project over HTTP instead of HTTPS. Any of these dependent artifacts could have been maliciously compromised by a MITM attack. Hence produced build artifacts of Vorto might be infected.

  • CVE-2025-62775HigOct 22, 2025
    risk 0.52cvss 8.0epss 0.00

    Mercku M6a devices through 2.1.0 allow root TELNET logins via the web admin password.

  • CVE-2026-42997HigMay 5, 2026
    risk 0.50cvss 7.7epss 0.00

    An issue was discovered in idrac in OpenStack Ironic before 35.0.1. During import, a user invoking molds can request authorization to be sent to a remote endpoint. The credential forwarded is a time-limited Keystone token (which provides access to all OpenStack services Ironic…

  • CVE-2025-59363HigSep 14, 2025
    risk 0.50cvss 7.7epss 0.00

    In One Identity OneLogin before 2025.3.0, a request returns the OIDC client secret with GET Apps API v2 (even though this secret should only be returned when an App is first created),

  • CVE-2023-44104HigOct 11, 2023
    risk 0.49cvss 7.5epss 0.00

    Broadcast permission control vulnerability in the Bluetooth module.Successful exploitation of this vulnerability may affect service confidentiality.

  • CVE-2023-44100HigOct 11, 2023
    risk 0.49cvss 7.5epss 0.00

    Broadcast permission control vulnerability in the Bluetooth module.Successful exploitation of this vulnerability may affect service confidentiality.

  • CVE-2023-31115HigJun 7, 2023
    risk 0.49cvss 7.5epss 0.00

    An issue was discovered in the Shannon RCS component in Samsung Exynos Modem 5123 and 5300. Incorrect resource transfer between spheres can cause changes to the activation mode of RCS via a crafted application.

  • CVE-2021-22806HigFeb 11, 2022
    risk 0.49cvss 7.5epss 0.01

    A CWE-669: Incorrect Resource Transfer Between Spheres vulnerability exists that could cause data exfiltration and unauthorized access when accessing a malicious website. Affected Product: spaceLYnk (V2.6.1 and prior), Wiser for KNX (V2.6.1 and prior), fellerLYnk (V2.6.1 and…

  • CVE-2012-2979HigNov 1, 2019
    risk 0.49cvss 7.5epss 0.02

    FreeBSD NSD before 3.2.13 allows remote attackers to crash a NSD child server process (SIGSEGV) and cause a denial of service in the NSD server.

  • CVE-2018-17791HigAug 21, 2019
    risk 0.49cvss 7.5epss 0.02

    Newgen OmniFlow Intelligent Business Process Suite (iBPS) 7.0 has an "improper server side validation" vulnerability where client-side validations are tampered, and inappropriate information is stored on the server side and fetched from the server every time the user visits the…

  • CVE-2026-12068HigJun 12, 2026
    risk 0.48cvss 7.4epss 0.00

    Information disclosure vulnerability in Avira Password Manager when used with Mozilla Firefox may allow a remote attacker operating a cross-origin iframe to obtain credentials autofilled for the parent web page via incorrect autofill field selection. This issue affects Avira…

  • CVE-2026-48831HigMay 24, 2026
    risk 0.47cvss epss 0.00

    Wine ships a .desktop file that registers itself as a MIME handler for EXE files and several other Windows executable file types. In some configurations, handling of an EXE file causes that file to be blindly executed with the permissions of the invoker. This allows escaping…