Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-367 (检查时间与使用时间(TOCTOU)的竞争条件) — Vulnerability Class 310

310 vulnerabilities classified as CWE-367 (检查时间与使用时间(TOCTOU)的竞争条件). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2023-0006 GlobalProtect App: Local File Deletion Vulnerability — GlobalProtect app 6.3 Medium2023-04-12
CVE-2022-33270 Time-of-check time-of-use race condition in Modem — Snapdragon 7.5 High2023-04-04
CVE-2022-3093 Tesla 安全漏洞 — Model 3 6.4 -2023-03-29
CVE-2022-36980 Ivanti Avalanche 安全漏洞 — Avalanche 9.8 -2023-03-29
CVE-2023-0778 Podman 安全漏洞 — podman 6.8 -2023-03-27
CVE-2023-22883 Local Privilege Escalation in Zoom for Windows Installers — Zoom Client for Meetings for IT Admin Windows installers 7.2 High2023-03-16
CVE-2023-24861 Windows Graphics Component Elevation of Privilege Vulnerability — Windows 10 Version 1809 7.0 High2023-03-14
CVE-2023-23389 Microsoft Defender Elevation of Privilege Vulnerability — Microsoft Malware Protection Engine 6.3 Medium2023-03-14
CVE-2022-33257 Time-of-check time-of-use race condition in Core — Snapdragon 9.3 Critical2023-03-07
CVE-2022-34398 Dell BIOS 安全漏洞 — CPG BIOS 7.5 High2023-02-01
CVE-2023-21555 Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability — Windows 10 Version 1809 8.1 High2023-01-10
CVE-2023-21537 Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability — Windows 10 Version 1809 7.8 High2023-01-10
CVE-2022-36927 Local Privilege Escalation in Zoom Rooms for macOS Clients — Zoom Rooms for macOS 8.8 High2023-01-09
CVE-2022-36929 Local Privilege Escalation in Zoom Rooms for Windows Clients — Zoom Rooms for Windows 7.8 High2023-01-09
CVE-2022-39908 SAMSUNG Mobile devices 安全漏洞 — Samsung Mobile Devices 6.9 Medium2022-12-08
CVE-2022-45842 WordPress WP ULike Plugin <= 4.6.4 is vulnerable to Race Condition vulnerability — WP ULike (WordPress plugin) 5.3 Medium2022-11-30
CVE-2022-22220 Junos OS and Junos OS Evolved: Due to a race condition the rpd process can crash upon receipt of a BGP update message containing flow spec route — Junos OS 5.9 Medium2022-10-18
CVE-2022-29800 networkd-dispatcher 安全漏洞 — networkd-dispatcher 4.7 -2022-09-21
CVE-2022-26859 Dell BIOS 安全漏洞 — CPG BIOS 6.1 Medium2022-09-06
CVE-2022-20909 Cisco Nexus Dashboard Privilege Escalation Vulnerabilities — Cisco Nexus Dashboard 6.0 Medium2022-07-21
CVE-2022-20906 Cisco Nexus Dashboard Privilege Escalation Vulnerabilities — Cisco Nexus Dashboard 6.0 Medium2022-07-21
CVE-2022-20907 Cisco Nexus Dashboard Privilege Escalation Vulnerabilities — Cisco Nexus Dashboard 6.0 Medium2022-07-21
CVE-2022-20908 Cisco Nexus Dashboard Privilege Escalation Vulnerabilities — Cisco Nexus Dashboard 6.0 Medium2022-07-21
CVE-2022-34899 Parallels Access 安全漏洞 — Access 7.8 -2022-07-18
CVE-2021-34986 Corel Parallels Desktop 安全漏洞 — Desktop 7.8 -2022-07-15
CVE-2022-33691 SAMSUNG Mobile devices score driver 安全漏洞 — Samsung Mobile Devices 6.2 Medium2022-07-11
CVE-2021-3969 Lenovo Vantage 安全漏洞 — IMController 7.8 High2022-05-18
CVE-2021-3922 Lenovo Vantage 竞争条件问题漏洞 — IMController 7.8 High2022-05-18
CVE-2022-1537 file.copy operations in GruntJS are vulnerable to a TOCTOU race condition leading to arbitrary file write in gruntjs/grunt — gruntjs/grunt 7.0 -2022-05-10
CVE-2022-0915 Logitech Sync desktop application prior to 2.4.574 - TOCTOU during installation leads to privelege escalation — Sync 6.0 Medium2022-04-12

Vulnerabilities classified as CWE-367 (检查时间与使用时间(TOCTOU)的竞争条件) represent 310 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.