CWE-1220 관련 취약점
같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.
CWE-1220 — 주요 취약점
악용이 확인된 것을 먼저 보여줍니다.
● 실제 악용이 확인됨CVE-2025-31201This issue was addressed by removing the vulnerable code. This issue is fixed in iOS 18.4.1 and iPad…14.0%심각9.8● 랜섬웨어 캠페인에 사용됨CVE-2026-33825Insufficient granularity of access control in Microsoft Defender allows an authorized attacker to el…0.4%높음7.8● 실제 악용이 확인됨CVE-2026-56155Insufficient granularity of access control in Active Directory Federation Services (AD FS) allows an…0.3%높음7.8CVE-2026-77480Insufficient granularity of access control in SQL Server allows an authorized attacker to elevate pr…0.5%높음8.8CVE-2026-66814Insufficient granularity of access control in SQL Server allows an authorized attacker to elevate pr…0.4%높음8.8CVE-2026-86338Ash field_policies are documented to protect against filter-based information disclosure: when a fie…0.3%보통6.0CVE-2026-69267Insufficient granularity of access control in Windows Connected User Experiences and Telemetry allow…0.3%보통6.5CVE-2026-78216AshLua exposes Ash read actions to Lua scripts run through an eval action. A read call accepts an op…0.2%보통6.0
전체 목록
10건
CVE-2026-78230AshAi exposes Ash read actions to language-model tool calls. The read tool accepts an aggregate result type (m…0.2%보통6.0
CVE-2026-15431A potential security vulnerability has been identified in the HP Support Assistant for versions prior to 9.53.…0.1%높음7.3
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.