Перейти к содержимому
Noroxi

CWE-129 · 610 записей

Improper Validation of Array Index

CVE этого класса

612 записей

  • CVE-2022-48503
    66На этой неделе

    The issue was addressed with improved bounds checks.

    ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 3 %

    apple · safari14 авг. 2023 г.

  • CVE-2023-0755
    43В плане

    The affected products are vulnerable to an improper validation of array index, which could allow an attacker to crash the server and remote

    КритическаяCVSS 9,8Эксплойта нетEPSS 12 %

    ge · digital industrial gateway server23 февр. 2023 г.

  • CVE-2021-35592
    41В плане

    Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General).

    СредняяCVSS 6,3Эксплойта нетEPSS 52 %

    oracle · mysql cluster20 окт. 2021 г.

  • CVE-2016-9053
    41В плане

    An exploitable out-of-bounds indexing vulnerability exists within the RW fabric message particle type of Aerospike Database Server 3.10.0.3.

    КритическаяCVSS 9,8Эксплойта нетEPSS 7 %

    aerospike · database server21 февр. 2017 г.

  • CVE-2015-8366
    41В плане

    Array index error in smal_decode_segment function in LibRaw before 0.17.1 allows context-dependent attackers to cause memory errors and poss

    КритическаяCVSS 9,8Эксплойта нетEPSS 5 %

    libraw · libraw14 янв. 2020 г.

  • CVE-2021-35598
    40В плане

    Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General).

    СредняяCVSS 6,3Эксплойта нетEPSS 51 %

    oracle · mysql cluster20 окт. 2021 г.

  • CVE-2021-35594
    40В плане

    Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General).

    СредняяCVSS 6,3Эксплойта нетEPSS 51 %

    oracle · mysql cluster20 окт. 2021 г.

  • CVE-2020-35636
    40В плане

    A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1 in Nef_S2/SNC_io_parser.h SNC_io_p

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    cgal · computational geometry algorithms library4 мар. 2021 г.

  • CVE-2019-17212
    40В плане

    Buffer overflows were discovered in the CoAP library in Arm Mbed OS 5.14.0.

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    mbed · mbed5 нояб. 2019 г.

  • CVE-2020-28601
    40В плане

    A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1.

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    cgal · computational geometry algorithms library4 мар. 2021 г.

  • CVE-2020-35628
    40В плане

    A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1.

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    cgal · computational geometry algorithms library4 мар. 2021 г.

  • CVE-2020-28636
    40В плане

    A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1.

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    cgal · computational geometry algorithms library4 мар. 2021 г.

  • CVE-2020-27483
    40В плане

    Garmin Forerunner 235 before 8.20 is affected by: Array index error.

    КритическаяCVSS 9,9Эксплойта нетEPSS 2 %

    garmin · forerunner 235 firmware16 нояб. 2020 г.

  • CVE-2019-15784
    40В плане

    Secure Reliable Transport (SRT) through 1.3.4 has a CSndUList array overflow if there are many SRT connections.

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    srtalliance · secure reliable transport29 авг. 2019 г.

  • CVE-2020-27485
    40В плане

    Garmin Forerunner 235 before 8.20 is affected by: Array index error.

    КритическаяCVSS 9,9Эксплойта нетEPSS 2 %

    garmin · forerunner 235 firmware16 нояб. 2020 г.

  • CVE-2020-12022
    40В плане

    Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0.

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    advantech · webaccess8 мая 2020 г.

  • CVE-2024-24563
    39Наблюдать

    Vyper array negative index vulnerability

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    vyperlang · vyper7 февр. 2024 г.

  • CVE-2021-47548
    39Наблюдать

    ethernet: hisilicon: hns: hns_dsaf_misc: fix a possible array overflow in hns_dsaf_ge_srst_by_port()

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    linux · linux kernel24 мая 2024 г.

  • CVE-2014-10048
    39Наблюдать

    In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9650, MS

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    qualcomm · mdm9206 firmware18 апр. 2018 г.

  • CVE-2016-10454
    39Наблюдать

    In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 425, SD 430, SD 450, and SD 625, in a QTEE API

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    qualcomm · sd 425 firmware18 апр. 2018 г.

  • CVE-2014-9989
    39Наблюдать

    In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9615, MD

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    qualcomm · mdm9206 firmware18 апр. 2018 г.

  • CVE-2014-9990
    39Наблюдать

    In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9615, MD

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    qualcomm · mdm9206 firmware18 апр. 2018 г.

  • CVE-2022-26100
    39Наблюдать

    SAPCAR - version 7.22, does not contain sufficient input validation on the SAPCAR archive.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    sap · sapcar10 мар. 2022 г.

  • CVE-2023-28004
    39Наблюдать

    A CWE-129: Improper validation of an array index vulnerability exists where a specially crafted Ethernet request could result in denial o

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    schneider-electric · powerlogic hdpm6000 firmware18 апр. 2023 г.

  • CVE-2024-31581
    39Наблюдать

    FFmpeg version n6.1 was discovered to contain an improper validation of array index vulnerability in libavcodec/cbs_h266_syntax_template.c.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    ffmpeg · ffmpeg17 апр. 2024 г.

Все классы уязвимостей