Protection mechanism failure in Windows Shell allows an unauthorized attacker to bypass a security feature over a networ
A vulnerability in the REST API endpoints of Cisco Nexus Dashboard and Cisco Nexus Dashboard Fabric Controller (NDFC) co
Inappropriate implementation in Permissions in Google Chrome prior to 140.0.7339.80 allowed a remote attacker to perform
The WP Ghost (Hide My WP Ghost) – Security & Firewall plugin for WordPress is vulnerable to Login Page Dislcosure in all
The OOPSpam Anti-Spam: Spam Protection for WordPress Forms & Comments (No CAPTCHA) plugin for WordPress is vulnerable to
Insufficient policy enforcement in Devtools in Google Chrome prior to 140.0.7339.80 allowed a remote attacker to leak cr
The WP Headless CMS Framework plugin for WordPress is vulnerable to protection mechanism bypass in all versions up to, a
mad-proxy is a Python-based HTTP/HTTPS proxy server for detection and blocking of malicious web activity using custom se
Improper validation of generative ai output in GitHub Copilot and Visual Studio Code allows an authorized attacker to by
Improper management of Content Security Policy in HCL BigFix Remote Control Lite Web Portal (versions 10.1.0.0326 and lo
Protection mechanism failure for some Edge Orchestrator software for Intel(R) Tiber™ Edge Platform may allow an authenti
Collision in MiniFilter driver in Avast Software Avast Free Antivirus before 25.9 on Windows allows a local attacker w
A vulnerability exists in riscv-boom SonicBOOM 1.2 (BOOMv1.2) processor implementation, where valid virtual-to-physical
Protection mechanism failure in Windows MapUrlToZone allows an unauthorized attacker to bypass a security feature over a
The application fails to implement several security headers. These headers help increase the overall security level of t
A vulnerability has been found in Union Bank of India Vyom 8.0.34 on Android and classified as problematic. This vulnera
Mattermost Desktop App versions <6.0.0 fail to enable the Hardened Runtime on the Mattermost Desktop App when packaged f
Envoy is a high-performance edge/middle/service proxy. In 1.33.12, 1.34.10, 1.35.6, 1.36.2, and earlier, when Envoy is c
Protection mechanism failure for some Edge Orchestrator software before version 24.11.1 for Intel(R) Tiber(TM) Edge Plat
HCL Unica Platform is impacted by misconfigured security related HTTP headers. This can lead to less secure browser def
Code Execution via Malicious Files: Attackers can create specially crafted files with embedded code that may execute wit
Isar is an integration system for automated root filesystem generation. In versions 0.11-rc1 and 0.11, defining ISAR_APT
Protection Mechanism Failure vulnerability in ESTsoft ALZip on Windows allows SmartScreen bypass.This issue affects ALZi
Anthropic Sandbox Runtime is a lightweight sandboxing tool for enforcing filesystem and network restrictions on arbitrar
Legality WHISTLEBLOWING by DigitalPA contains a protection mechanism failure in which critical HTTP security headers are
Vulnerability of incorrect service logic in the WindowManagerServices module.Successful exploitation of this vulnerabili
A sandbox bypass vulnerability involving crafted constructor bodies in Jenkins Script Security Plugin 1335.vf07d9ce377a_
Protection mechanism failure issue exists in RevoWorks SCVX prior to scvimage4.10.21_1013 (when using 'VirusChecker' or
ScaleFusion 10.5.2 does not properly limit users to the Edge application because Ctrl-O and Ctrl-S can be used. This is
In the Linux kernel before 6.6.7, an untrusted VMM can trigger int80 syscall handling at any given point. This is relate
SmartScreen Prompt Security Feature Bypass Vulnerability
Dropbox Desktop Folder Sharing Mark-of-the-Web Bypass Vulnerability. This vulnerability allows remote attackers to bypas
An issue in Eskooly Free Online School management Software v.3.0 and before allows a remote attacker to escalate privile
Azure CycleCloud Elevation of Privilege Vulnerability
Windows SmartScreen Security Feature Bypass Vulnerability
A logic issue was addressed with improved checks. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15, macOS S
Protection mechanism failure in the SPP for some Intel(R) Processors may allow an authenticated user to potentially enab
Twig is a template language for PHP. Under some circumstances, the sandbox security checks are not run which allows user
Internet Shortcut Files Security Feature Bypass Vulnerability
Microsoft Office Remote Code Execution Vulnerability
In startInstall of UpdateFetcher.java, there is a possible way to trigger a malicious config update due to a logic error
In multiple files, there is a possible way to capture the device screen when disallowed by device policy due to a logic
A logic issue was addressed with improved checks. This issue is fixed in iTunes 12.13.1 for Windows. A local attacker ma
Secure Boot Security Feature Bypass Vulnerability
A logic issue was addressed with improved checks. This issue is fixed in iTunes 12.12.4 for Windows. A local attacker ma
Parallels Desktop Updater Protection Mechanism Failure Software Downgrade Vulnerability. This vulnerability allows local
Windows LockDown Policy (WLDP) Security Feature Bypass Vulnerability
WinZip Mark-of-the-Web Bypass Vulnerability. This vulnerability allows remote attackers to bypass the Mark-of-the-Web pr
Jinja is an extensible templating engine. Prior to 3.1.5, An oversight in how the Jinja sandboxed environment detects ca
Windows Scripting Engine Security Feature Bypass Vulnerability
Frequently Asked Questions
What is CWE-693?
CWE-693 (CWE-693) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-693?
There are 763 CVE records associated with CWE-693 in our database. Of these, 111 are critical severity, 247 are high severity, and 304 are medium severity.
How can I protect against CWE-693 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-693 using AI-powered security agents.
Detect CWE-693 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-693 vulnerabilities across your infrastructure.
Get Started