Vulnerabilities > Improper Control of Dynamically-Managed Code Resources

DATE CVE VULNERABILITY TITLE RISK
2021-12-02 CVE-2021-23258 Improper Control of Dynamically-Managed Code Resources vulnerability in Craftercms Crafter CMS
Authenticated users with Administrator or Developer roles may execute OS commands by SPEL Expression in Spring beans.
network
low complexity
craftercms CWE-913
6.5
2021-12-02 CVE-2021-23259 Improper Control of Dynamically-Managed Code Resources vulnerability in Craftercms Crafter CMS
Authenticated users with Administrator or Developer roles may execute OS commands by Groovy Script which uses Groovy lib to render a webpage.
network
low complexity
craftercms CWE-913
6.5
2021-12-02 CVE-2021-23262 Improper Control of Dynamically-Managed Code Resources vulnerability in Craftercms Crafter CMS
Authenticated administrators may modify the main YAML configuration file and load a Java class resulting in RCE.
network
low complexity
craftercms CWE-913
6.5
2021-10-11 CVE-2021-23448 Improper Control of Dynamically-Managed Code Resources vulnerability in Config-Handler Project Config-Handler 1.0.0
All versions of package config-handler are vulnerable to Prototype Pollution when loading config files.
network
low complexity
config-handler-project CWE-913
7.5
2021-08-03 CVE-2021-32813 Improper Control of Dynamically-Managed Code Resources vulnerability in Traefik 1.0
Traefik is an HTTP reverse proxy and load balancer.
network
traefik CWE-913
6.8
2021-08-02 CVE-2021-22387 Improper Control of Dynamically-Managed Code Resources vulnerability in Huawei Emui and Magic UI
There is an Improper Control of Dynamically Managing Code Resources Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may allow attempts to remotely execute commands.
network
low complexity
huawei CWE-913
7.5
2021-05-11 CVE-2021-32563 Improper Control of Dynamically-Managed Code Resources vulnerability in Xfce Thunar
An issue was discovered in Thunar before 4.16.7 and 4.17.x before 4.17.2.
network
low complexity
xfce CWE-913
critical
9.8
2021-03-30 CVE-2021-21413 Improper Control of Dynamically-Managed Code Resources vulnerability in Isolated-Vm Project Isolated-Vm
isolated-vm is a library for nodejs which gives you access to v8's Isolate interface.
low complexity
isolated-vm-project CWE-913
5.8
2021-01-27 CVE-2021-26276 Improper Control of Dynamically-Managed Code Resources vulnerability in Godaddy Node-Config-Shield 0.2.2
scripts/cli.js in the GoDaddy node-config-shield (aka Config Shield) package before 0.2.2 for Node.js calls eval when processing a set command.
network
low complexity
godaddy CWE-913
5.3
2020-11-18 CVE-2020-3419 Improper Control of Dynamically-Managed Code Resources vulnerability in Cisco Webex Meetings Server
A vulnerability in Cisco Webex Meetings and Cisco Webex Meetings Server could allow an unauthenticated, remote attacker to join a Webex session without appearing on the participant list.
network
low complexity
cisco CWE-913
critical
9.1