CWE-449
14 CVEs • Abstraction: Base
The UI Performs the Wrong Action
The UI performs the wrong action with respect to the user's request.
CVEs (14)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Inappropriate implementation in Downloads in Google Chrome prior to 143.0.7499.41 allowed a remote attacker who convinced a user to engage in specific UI gestures to bypass download protections via a crafted HTML page. (...Show more |
LinkedIn Mobile Application for Android version 4.1.1087.2 fails to update link preview metadata (image, title, description) when a user replaces the original URL in a post or comment before publishing. As a result, the...Show more |
The ui performs the wrong action in Microsoft Edge for Android allows an unauthorized attacker to perform spoofing over a network. |
The UI performs the wrong action in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network. |
Microsoft Edge (Chromium-based) Spoofing Vulnerability |
Microsoft Edge (Chromium-based) Spoofing Vulnerability |
Microsoft Edge (Chromium-based) Spoofing Vulnerability |
Microsoft Edge (Chromium-based) Spoofing Vulnerability |
1Zoom 4Meeting Software Development Kit RoomsVdi Windows Meeting Clients+1 moreJun 17, 2026 Feb 14, 2024 N/A· v4 4.4 MEDIUM· v3 N/A· v2 Improper authentication in some Zoom clients may allow a privileged user to conduct a disclosure of information via local access. |
1Zoom 3Meeting Software Development Kit Video Software Development KitZoomJun 17, 2026 Dec 13, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Improper access control in Zoom Mobile App for iOS and Zoom SDKs for iOS before version 5.16.5 may allow an authenticated user to conduct a disclosure of information via network access. |
1Zoom 3Meetings Virtual Desktop InfrastructureZoomJun 17, 2026 Nov 15, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Insufficient control flow management in some Zoom clients may allow an authenticated user to conduct an information disclosure via network access. |
1Zoom 3Meeting Software Development Kit Virtual Desktop InfrastructureZoomJun 17, 2026 Sep 12, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Improper authentication in Zoom clients may allow an authenticated user to conduct a denial of service via network access. |
Improper input validation in Zoom Desktop Client for Windows before 5.15.5 may allow an authenticated user to enable an information disclosure via network access. |
1Zoom 3Rooms Virtual Desktop InfrastructureZoomJun 17, 2026 Aug 8, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Client-side enforcement of server-side security in Zoom clients before 5.14.10 may allow an authenticated user to enable information disclosure via network access. |