The product exposes a resource to the wrong control sphere, providing unintended actors with inappropriate access to the resource.
Volume of CVEs assigned to CWE-668 and their average CVSS base score over time.
Top CVEs that have been assigned this CWE. A single CVE can have multiple CWE assignments, though many have just one.
727 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-39952CRITICAL A external control of file name or path in Fortinet FortiNAC versions 9.4.0, 9.2.0 through 9.2.5, 9.1.0 through 9.1.7, 8.8.0 through 8.8.11, 8.7.0 through 8.7.6, 8.6.0 through 8.6. | Feb 16, 2023 | 9.8 | 92 | NO | YES |
CVE-2026-44338HIGH PraisonAI is a multi-agent teams system. From version 2.5.6 to before version 4.6.34, PraisonAI ships a legacy Flask API server with authentication disabled by default. When that s | May 8, 2026 | 7.3 | 63 | NO | YES |
CVE-2017-16597CRITICAL This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of NetGain Systems Enterprise Manager 7.2.730 build 1034. Authentication is not req | Jan 23, 2018 | 9.8 | 60 | NO | NO |
CVE-2022-34047HIGH An access control issue in Wavlink WN530HG4 M30HG4.V5030.191116 allows attackers to obtain usernames and passwords via view-source:http://IP_ADDRESS/set_safety.shtml?r=52300 and se | Jul 20, 2022 | 7.5 | 55 | NO | YES |
CVE-2024-25153CRITICAL A directory traversal within the ‘ftpservlet’ of the FileCatalyst Workflow Web Portal allows files to be uploaded outside of the intended ‘uploadtemp’ directory with a specially cr | Mar 13, 2024 | 9.8 | 54 | NO | NO |
CVE-2024-21626HIGH runc is a CLI tool for spawning and running containers on Linux according to the OCI specification. In runc 1.1.11 and earlier, due to an internal file descriptor leak, an attacker | Jan 31, 2024 | 8.6 | 54 | NO | YES |
CVE-2017-16603HIGH This vulnerability allows remote attackers to execute code by creating arbitrary files on vulnerable installations of NetGain Systems Enterprise Manager 7.2.730 build 1034. Althoug | Jan 23, 2018 | 8.8 | 54 | NO | NO |
CVE-2021-45420CRITICAL Emerson Dixell XWEB-500 products are affected by arbitrary file write vulnerability in /cgi-bin/logo_extra_upload.cgi, /cgi-bin/cal_save.cgi, and /cgi-bin/lo_utils.cgi. An attacker | Feb 14, 2022 | 9.8 | 53 | NO | YES |
CVE-2019-12928CRITICAL The QMP migrate command in QEMU version 4.0.0 and earlier is vulnerable to OS command injection, which allows the remote attacker to achieve code execution, denial of service, or i | Jun 24, 2019 | 9.8 | 53 | NO | YES |
CVE-2022-25236CRITICAL xmlparse.c in Expat (aka libexpat) before 2.4.5 allows attackers to insert namespace-separator characters into namespace URIs. | Feb 16, 2022 | 9.8 | 50 | NO | NO |
Exploit activity across CVEs assigned to this CWE, including CVEs that carry other CWE assignments.
Social posts that mention CVE IDs assigned to this CWE. This is assigned-CVE activity, not mentions of the CWE label itself.
Media articles that mention CVE IDs assigned to this CWE. This is assigned-CVE coverage, not mentions of the CWE label itself.