VYPR

CWE-710

Improper Adherence to Coding Standards

PillarIncomplete

Description

The product does not follow certain coding rules for development, which can lead to resultant weaknesses or increase the severity of the associated vulnerabilities.

Hierarchy (View 1000)

CVEs mapped to this weakness (6)

  • CVE-2021-33528HigJun 25, 2021
    risk 0.57cvss 8.8epss 0.01

    In Weidmueller Industrial WLAN devices in multiple versions an exploitable privilege escalation vulnerability exists in the iw_console functionality. A specially crafted menu selection string can cause an escape from the restricted console, resulting in system access as the root…

  • CVE-2020-1613HigApr 8, 2020
    risk 0.56cvss 8.6epss 0.01

    A vulnerability in the BGP FlowSpec implementation may cause a Juniper Networks Junos OS device to terminate an established BGP session upon receiving a specific BGP FlowSpec advertisement. The BGP NOTIFICATION message that terminates an established BGP session is sent toward…

  • CVE-2020-1603HigJan 15, 2020
    risk 0.56cvss 8.6epss 0.01

    Specific IPv6 packets sent by clients processed by the Routing Engine (RE) are improperly handled. These IPv6 packets are designed to be blocked by the RE from egressing the RE. Instead, the RE allows these specific IPv6 packets to egress the RE, at which point a mbuf memory…

  • CVE-2021-27501HigApr 1, 2022
    risk 0.49cvss 7.5epss 0.01

    Philips Vue PACS versions 12.2.x.x and prior does not follow certain coding rules for development, which can lead to resultant weaknesses or increase the severity of the associated vulnerabilities.

  • CVE-2023-30961MedSep 27, 2023
    risk 0.42cvss 6.5epss 0.00

    Palantir Gotham was found to be vulnerable to a bug where under certain circumstances, the frontend could have applied an incorrect classification to a newly created property or link.

  • CVE-2025-0007MedNov 24, 2025
    risk 0.37cvss 5.7epss 0.00

    Insufficient validation within Xilinx Run Time framework could allow a local attacker to escalate privileges from user space to kernel space, potentially compromising confidentiality, integrity, and/or availability.