Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-216 (容器错误) — Vulnerability Class 4

4 vulnerabilities classified as CWE-216 (容器错误). AI Chinese analysis included.

CWE-216 is a deprecated entry that originally categorized containment errors, also known as container errors, within software systems. Although the weakness is no longer actively tracked due to its vague structure and ambiguous terminology, it historically referred to failures in isolating components or data within logical boundaries. Exploitation typically involved bypassing these containment mechanisms to access restricted resources or execute unauthorized operations, often leading to privilege escalation or data leakage. Developers avoided such issues by implementing strict access controls, validating input boundaries, and ensuring clear separation between trusted and untrusted execution environments. The deprecation highlights the need for precise definitions in security frameworks, as the term "container" carries varied meanings that can obscure specific vulnerability patterns.

MITRE CWE Description
This entry has been deprecated, as it was not effective as a weakness and was structured more like a category. In addition, the name is inappropriate, since the "container" term is widely understood by developers in different ways than originally intended by PLOVER, the original source for this entry.
CVE IDTitleCVSSSeverityPublished
CVE-2020-3514 Cisco Firepower Threat Defense Software Multi-Instance Container Escape Vulnerability — Cisco Firepower Threat Defense Software 8.2 High2020-10-21
CVE-2019-12675 Cisco Firepower Threat Defense Software Multi-instance Container Escape Vulnerabilities — Cisco Firepower Threat Defense Software 8.8 -2019-10-02
CVE-2019-12674 Cisco Firepower Threat Defense Software Multi-instance Container Escape Vulnerabilities — Cisco Firepower Threat Defense Software 8.8 -2019-10-02
CVE-2019-1911 Cisco Unified Communications Domain Manager Restricted Shell Escape Vulnerability — Cisco Unified Communications Domain Manager 6.7 -2019-07-06

Vulnerabilities classified as CWE-216 (容器错误) represent 4 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.