CWE-66: Improper Handling of File Names that Identify Virtual Resources
The product does not handle or incorrectly handles a file name that identifies a "virtual" resource that is not directly specified within the directory that is associated with the file name, causing the product to perform file-based operations on a resource that is not a file.
1 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2024-10905 — IdentityIQ Improper Access Control VulnerabilityIdentityIQ Improper Access Control Vulnerability
Recently published
- CVE-2024-10905 — IdentityIQ Improper Access Control VulnerabilityIdentityIQ Improper Access Control Vulnerability