CWE-566

Total CVEs
5
Vulnerabilities
Avg CVSS v3
6.0
Medium
Avg CVSS v2
5.0
Medium
Latest CVE
2025
Most Recent

Severity Distribution

Critical 2
40%
High 0
0%
Medium 1
20%
Low 2
40%

External References

All CVEs (5)

Page 1 of 1
CVSS:10.0(Critical)

Authorization Bypass Through User-Controlled SQL Primary Key vulnerability in BSS Software Mobuy Online Machinery Monitoring Panel allows SQL Injection.This issue affects Mobuy Online Machinery Monito...

CVSS:9.1(Critical)

Authorization bypass through user-controlled key issue exists in EC-CUBE 2.11.0 through 2.12.2 and EC-Orange systems deployed before June 29th, 2015. If this vulnerability is exploited, a user of the ...

CVSS:5.5(Medium)

SQL-Injection in Harbor allows priviledge users to leak the task IDs

CVSS:2.7(Low)

Zulip is an open-source team collaboration tool. The API for deleting an organization custom profile field is supposed to be restricted to organization administrators, but its handler failed to check ...

CVSS:2.7(Low)

Zulip is an open-source team collaboration tool. The API for deleting an organization export is supposed to be restricted to organization administrators, but its handler failed to check that the field...