CWE-437
4 CVEs • Abstraction: Base
Incomplete Model of Endpoint Features
A product acts as an intermediary or monitor between two or more endpoints, but it does not have a complete model of an endpoint's features, behaviors, or state, potentially causing the product to perform incorrect actions based on this incomplete model.
CVEs (4)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
An issue in the shiroFilter function of White-Jotter project v0.2.2 allows attackers to execute a directory traversal and access sensitive endpoints via a crafted URL. |
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.8, TCP streams with TCP urgent data (out of band data) can lead to Suricata analyzing dat...Show more |
1Cisco 2Secure Endpoint Secure Endpoint Private CloudJun 17, 2026 Nov 22, 2023 N/A· v4 4.4 MEDIUM· v3 N/A· v2 A vulnerability in the endpoint software of Cisco Secure Endpoint for Windows could allow an authenticated, local attacker to evade endpoint protection within a limited time window. This vulnerability is due to a timing...Show more |
1Osisoft 4Pi Af Client Pi Buffer SubsystemPi Data Archive+1 moreNov 21, 2024 Apr 3, 2018 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 OSIsoft PI System software (Applications using PI Asset Framework (AF) Client versions prior to PI AF Client 2016, Version 2.8.0; Applications using PI Software Development Kit (SDK) versions prior to PI SDK 2016, Versio...Show more |