xrdp is an open source RDP server. In versions through 0.10.5, the session execution component did not properly handle a
theshit is a command-line utility that automatically detects and fixes common mistakes in shell commands. Prior to versi
As an inadvertent side effect of an unrelated code change, PRIV_KTRACE was always denied to a jailed root user. Tracing
sh provides Python process launching. Prior to 2.2.4, the _uid option in sh.py performs an incomplete privilege drop on
In onNullBinding of HostEmulationManager.java, there is a possible way to launch an activity from the background due to
An Ubuntu-specific patch to AccountsService before 23.13.9-8ubuntu7 only partially drops privileges before launching lan
When a process calls execve(2) to execute a setuid or setgid image, hwpmc(4) is supposed to detach PMCs owned by unprivi
PraisonAI before 4.6.78 contains an unenforced security policy vulnerability in the default Subprocess Sandbox backend w
The kernel function that implements unlinkat(2) and funlinkat(2) validated the AT_RESOLVE_BENEATH flag but failed to pas
Authentication modules in Netatalk 1.5.0 through 4.4.2 fail to check the return value of seteuid(), which may allow a re
Frequently Asked Questions
What is CWE-273?
CWE-273 (CWE-273) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-273?
There are 10 CVE records associated with CWE-273 in our database. Of these, 0 are critical severity, 9 are high severity, and 1 are medium severity.
How can I protect against CWE-273 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-273 using AI-powered security agents.
Detect CWE-273 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-273 vulnerabilities across your infrastructure.
Get Started