In OpenXiangShan NEMU prior to 55295c4, when running with RVH (Hypervisor extension) enabled, a VS-mode guest write to t
A flaw was found in the Application Subscription controller (multicluster-operators-subscription) of Red Hat Advanced Cl
CVAT is an open source interactive video and image annotation tool for computer vision. In versions 1.0.0 through 2.54.0
Privilege Defined With Unsafe Actions vulnerability in Drupal Role Delegation allows Privilege Escalation.This issue aff
Privilege Defined With Unsafe Actions, Missing Authentication for Critical Function vulnerability in Universal Software
Privilege escalation in Apache Cassandra 5.0 on an mTLS environment using MutualTlsAuthenticator allows a user with only
A vulnerability exists in BIG-IP and BIG-IQ systems where a highly privileged, authenticated attacker with at least the
A vulnerability exists in REB500 for an authenticated user with Installer role to access and alter the contents of direc
A vulnerability exists in REB500 for an authenticated user with low-level privileges to access and alter the content of
Privilege escalation via background service of OpenVPN Connect 3.5.1 through 3.8.1 on macOS allows attackers to execute
IBM System Storage DS8A00 10.1.3.0 through 10.11.35.0 and IBM DS8900F 89.40.83.0 through 89.44.25.0 could allow an authe
Privilege Defined With Unsafe Actions vulnerability in Drupal Mini site allows Stored XSS.This issue affects Mini site:
An access bypass vulnerability in Drupal TFA Basic Plugins allows users with the administer users permission to view or
Frequently Asked Questions
What is CWE-267?
CWE-267 (CWE-267) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-267?
There are 13 CVE records associated with CWE-267 in our database. Of these, 2 are critical severity, 9 are high severity, and 1 are medium severity.
How can I protect against CWE-267 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-267 using AI-powered security agents.
Detect CWE-267 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-267 vulnerabilities across your infrastructure.
Get Started