Vulnerabilities > Protection Mechanism Failure

DATE CVE VULNERABILITY TITLE RISK
2024-11-21 CVE-2024-11197 The Lock User Account plugin for WordPress is vulnerable to user lock bypass in all versions up to, and including, 1.0.5.
network
high complexity
CWE-693
4.2
2019-08-08 CVE-2019-1970 Protection Mechanism Failure vulnerability in Cisco Firepower Threat Defense
A vulnerability in the Secure Sockets Layer (SSL)/Transport Layer Security (TLS) protocol inspection engine of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass the configured file policies on an affected system.
network
low complexity
cisco CWE-693
7.5
2019-07-18 CVE-2019-3741 Protection Mechanism Failure vulnerability in Dell products
Dell EMC Unity and UnityVSA versions prior to 5.0.0.0.5.116 contain a plain-text password storage vulnerability.
local
low complexity
dell CWE-693
7.8
2019-06-24 CVE-2019-12938 Protection Mechanism Failure vulnerability in Analogic Poste.Io 2.1.6
The Roundcube component of Analogic Poste.io 2.1.6 uses .htaccess to protect the logs/ folder, which is effective with the Apache HTTP Server but is ineffective with nginx.
network
low complexity
analogic CWE-693
4.3
2019-05-31 CVE-2019-10328 Protection Mechanism Failure vulnerability in Jenkins Pipeline Remote Loader
Jenkins Pipeline Remote Loader Plugin 1.4 and earlier provided a custom whitelist for script security that allowed attackers to invoke arbitrary methods, bypassing typical sandbox protection.
network
low complexity
jenkins CWE-693
critical
9.9
2019-05-16 CVE-2019-1833 Protection Mechanism Failure vulnerability in Cisco Secure Firewall Management Center
A vulnerability in the Secure Sockets Layer (SSL)/Transport Layer Security (TLS) protocol parser of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass configured policies.
network
low complexity
cisco CWE-693
5.8
2019-05-16 CVE-2019-1832 Protection Mechanism Failure vulnerability in Cisco Secure Firewall Management Center
A vulnerability in the detection engine of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass configured access control policies.
network
low complexity
cisco CWE-693
7.5
2019-04-22 CVE-2011-3151 Protection Mechanism Failure vulnerability in Canonical Selinux
The Ubuntu SELinux initscript before version 1:0.10 used touch to create a lockfile in a world-writable directory.
network
high complexity
canonical CWE-693
5.9
2019-01-24 CVE-2019-1669 Protection Mechanism Failure vulnerability in Cisco Firepower Threat Defense 6.3.0/6.4.0
A vulnerability in the data acquisition (DAQ) component of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass configured access control policies or cause a denial of service (DoS) condition.
network
low complexity
cisco CWE-693
8.6
2018-07-16 CVE-2018-0384 Protection Mechanism Failure vulnerability in Cisco Secure Firewall Management Center
A vulnerability in the detection engine of Cisco FireSIGHT System Software could allow an unauthenticated, remote attacker to bypass a URL-based access control policy that is configured to block traffic for an affected system.
network
low complexity
cisco CWE-693
5.8