CWE-622Variant

Improper Validation of Function Hook Arguments

Draft in the CWE catalog · 2 CVEs mapped

2
CVEs mapped
5.5
Median CVSS
What it is

The product adds hooks to user-accessible API functions, but it does not properly validate the arguments. This could lead to resultant vulnerabilities.

Recent examples
5.5cvss
CVE-2024-0312

A malicious insider can uninstall Skyhigh Client Proxy without a valid uninstall password

A malicious insider can uninstall Skyhigh Client Proxy without a valid uninstall password.

MEDIUMno explanation yet
0%
epss
5.5cvss
CVE-2024-0311

A malicious insider can bypass the existing policy of Skyhigh Client Proxy without a valid release code

A malicious insider can bypass the existing policy of Skyhigh Client Proxy without a valid release code.

MEDIUMno explanation yet
0%
epss
The record
Technical detail
CWE ID
CWE-622
Abstraction
Variant
Structure
Simple
Status
Draft