Threats Tagged 'cwe-279'
View all threats tagged with 'cwe-279'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cwe-279'
Click on any threat for detailed analysis and mitigation recommendations
0 A flaw was found in firewalld. A local unprivileged user can exploit this vulnerability by mis-authorizing two runtime D-Bus (Desktop Bus) setters, setZoneSettings2 and setPolicySettings. This mis-authorization allows the user to modify the runtime firewall state without proper authentication, leading to unauthorized changes in network security configurations. Join the discussion | GCVE Database | 03/27/2026, 05:30:23 UTC Added: 06/09/2026, 10:23:30 UTC |
Red Hat Security Advisory: nfs-utils security updateCVE-2025-12801 0 The nfs-utils packages provide a daemon for the kernel Network File System (NFS) server and related tools, which provides better performance than the traditional Linux NFS server used by most users. These packages also contain the mount.nfs, umount.nfs, and showmount programs. Security Fix(es): * nfs-utils: rpc.mountd in the nfs-utils privilege escalation (CVE-2025-12801) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Join the discussion | GCVE Database | 03/05/2026, 19:05:37 UTC Added: 07/21/2026, 20:06:37 UTC |
0 IBM Aspera Faspex 5 5.0.0 through 5.0.14.1 may allow inconsistent permissions between the user interface and backend API allowed users to access features that appeared disabled, potentially leading to misuse. Join the discussion | CVE Database V5 | 12/26/2025, 14:11:45 UTC Added: 12/26/2025, 14:29:07 UTC |
0 Under certain circumstances, the Quartus Prime Pro Installer for Windows does not check the permissions of the Quartus target installation directory if the target installation directory already exists. Join the discussion | CVE Database V5 | 12/11/2025, 20:35:24 UTC Added: 12/11/2025, 20:56:02 UTC |
0 Incorrect Execution-Assigned Permissions vulnerability in Apache StreamPark. This issue affects Apache StreamPark: from 2.1.4 before 2.1.6. Users are recommended to upgrade to version 2.1.6, which fixes the issue. Join the discussion | CVE Database V5 | 10/10/2025, 09:52:26 UTC Added: 10/10/2025, 10:04:05 UTC |
0 NVIDIA DOCA-Host and Mellanox OFED contain a vulnerability in the VGT+ feature, where an attacker on a VM might cause escalation of privileges and denial of service on the VLAN. Join the discussion | CVE Database V5 | 07/17/2025, 17:19:50 UTC Added: 07/17/2025, 17:31:11 UTC |
Showing 1 to 6 of 6 results