SEARCHSearch the cs-graph

CVE-#### · MITRE T#### · CWE-#### · ATLAS AML.T#### · D3-XX · compliance article references. Authored by Adam Lundqvist.

49 results for “cwe-310” · 0.96 s · cached

Facets · 3 entity types

28 CVE19 CWE2 CAPEC
CWE-533CWE

DEPRECATED: Information Exposure Through Server Log Files

This entry has been deprecated because its abstraction was too low-level. See CWE-532.

Match for cwe-310
CVE-2020-27283CVE

CVE-2020-27283

An attacker could send a specially crafted message to Crimson 3.1 (Build versions prior to 3119.001) that could leak arbitrary memory locations.

CVSS 5.3EPSS 1.0%redlion
Match for cwe-310
CVE-2025-23181CVE

CVE-2025-23181

CWE-250: Execution with Unnecessary Privileges

CVSS 8.0EPSS 0.3%
Match for cwe-310
CVE-2025-1104CVE

CVE-2025-1104

A vulnerability has been found in D-Link DHP-W310AV 1.04 and classified as critical. This vulnerability affects unknown code. The manipulation leads to authentication bypass by spoofing. The attack c…

CVSS 9.8EPSS 3.0%
Match for cwe-310
CVE-2026-34336CVE

CVE-2026-34336

Integer overflow or wraparound in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.

CVSS 7.8EPSS 0.3%microsoft
Match for cwe-310
CAPEC-131CAPEC

Resource Leak Exposure

An adversary utilizes a resource leak on the target to deplete the quantity of the resource available to service legitimate requests. Metadata: meta CAPEC pattern, status stable, likelihood medium, …

Meta
Match for cwe-310
CVE-2026-10183CVE

CVE-2026-10183

A vulnerability was identified in TRENDnet TEW-432BRP 3.10B20. This affects the function formWlanSetup of the file /goform/formWlanSetup. The manipulation of the argument enrollee leads to stack-base…

CVSS 8.8EPSS 0.5%
Match for cwe-310
CVE-2026-1949CVE

CVE-2026-1949

Delta Electronics AS320T has incorrect calculation of the buffer size on the stack in the GET/PUT request handler of the web service.

CVSS 9.8EPSS 0.6%
Match for cwe-310
CVE-2026-32956CVE

CVE-2026-32956

SD-330AC and AMC Manager provided by silex technology, Inc. contain a heap-based buffer overflow vulnerability in processing the redirect URLs. Arbitrary code may be executed on the device.

CVSS 9.8EPSS 0.7%
Match for cwe-310
CWE-92CWE

DEPRECATED: Improper Sanitization of Custom Special Characters

This entry has been deprecated. It originally came from PLOVER, which sometimes defined "other" and "miscellaneous" categories in order to satisfy exhaustiveness requirements for taxonomies. Within t…

Match for cwe-310
CAPEC-680CAPEC

Exploitation of Improperly Controlled Registers

Metadata: detailed CAPEC pattern, status draft, likelihood medium, severity high. Underlying weaknesses: CWE-1224, CWE-1231, CWE-1233, CWE-1262, CWE-1283. Related CAPEC patterns: [object Object], [ob…

Detailed
Match for cwe-310
CVE-2026-3703CVE

CVE-2026-3703

A flaw has been found in Wavlink NU516U1 251208. This affects the function sub_401A10 of the file /cgi-bin/login.cgi. Executing a manipulation of the argument ipaddr can lead to out-of-bounds write. …

CVSS 9.8EPSS 1.3%
Match for cwe-310
CVE-2026-1951CVE

CVE-2026-1951

Delta Electronics AS320T has no checking of the length of the buffer with the directory name vulnerability.

CVSS 9.8EPSS 0.6%
Match for cwe-310
CVE-2025-41270CVE

CVE-2025-41270

Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the Console WebUI in Waterfall WF-500 TX and RX Hosts in versio…

CVSS 9.8EPSS 1.4%waterfall-security
Match for cwe-310
CVE-2026-10181CVE

CVE-2026-10181

A vulnerability was found in TRENDnet TEW-432BRP 3.10B20. The affected element is the function formSysCmd of the file /goform/formSysCmd. Performing a manipulation of the argument submit-url results …

CVSS 8.8EPSS 0.5%
Match for cwe-310
CVE-2026-32530CVE

CVE-2026-32530

Incorrect Privilege Assignment vulnerability in WPFunnels Creator LMS creatorlms allows Privilege Escalation.This issue affects Creator LMS: from n/a through <= 1.1.18.

CVSS 8.8EPSS 0.4%
Match for cwe-310
CVE-2026-3999CVE

CVE-2026-3999

A broken access control may allow an authenticated user to perform a horizontal privilege escalation. The vulnerability only impacts specific configurations.

CVSS 8.8EPSS 0.4%pointsharp
Match for cwe-310
CWE-769CWE

DEPRECATED: Uncontrolled File Descriptor Consumption

This entry has been deprecated because it was a duplicate of CWE-774. All content has been transferred to CWE-774.

Match for cwe-310
CWE-225CWE

DEPRECATED: General Information Management Problems

This weakness can be found at CWE-199.

Match for cwe-310
CWE-542CWE

DEPRECATED: Information Exposure Through Cleanup Log Files

This entry has been deprecated because its abstraction was too low-level. See CWE-532.

Match for cwe-310
Hybrid search: an exact-match keyword pass (title + MITRE-ID + body-head) fused with Vertex AI semantic similarity (text-embedding-005, cosine vector search over the corpus) via reciprocal-rank fusion — exact IDs stay pinned, related concepts surface by meaning. Curated by Adam Lundqvist, Founder at SQUR.