CWE-392 · 9 записей
Missing Report of Error Condition
CVE этого класса
9 записей
| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
36Наблюдать | CVE-2025-32743Эксплойта нет | In ConnMan through 1.44, the lookup string in ns_resolv in dnsproxy.c can be NULL or an empty string when the TC (Truncated) bit is set in aconnman · connman · CWE-392 | Критическая9,0 | — | 0,5 % | 10 апр. 2025 г. |
32Наблюдать | CVE-2017-2342Эксплойта нет | SRX Series: MACsec failure to report errorsjuniper · junos · CWE-392 | Высокая8,1 | — | 0,6 % | 17 июл. 2017 г. |
30Наблюдать | CVE-2026-42246Эксплойта нет | net-imap vulnerable to STARTTLS stripping via invalid response timingruby-lang · net\ · CWE-392 | Высокая7,6 | — | 0,3 % | 9 мая 2026 г. |
28Наблюдать | CVE-2025-23270Эксплойта нет | NVIDIA Jetson Linux contains a vulnerability in UEFI Management mode, where an unprivileged local attacker may cause exposure of sensitive invidia · jetson orin, igx orin and xavier devices · CWE-392 | Высокая7,1 | — | 0,2 % | 17 июл. 2025 г. |
26Наблюдать | CVE-2024-12797Эксплойта нет | RFC7250 handshakes with unauthenticated servers don't abort as expectedopenssl · openssl · CWE-392 | Средняя6,3 | — | 2,5 % | 11 февр. 2025 г. |
26Наблюдать | CVE-2025-26268Эксплойта нет | DragonflyDB Dragonfly before 1.27.0 allows authenticated users to cause a denial of service (daemon crash) via a crafted Redis command.dragonflydb · dragonfly · CWE-392 | Средняя6,5 | — | 0,4 % | 17 апр. 2025 г. |
23Наблюдать | CVE-2026-20005Эксплойта нет | Multiple Cisco products are affected by a vulnerability in the Snort 3 Detection Engine that could allow an unauthenticated, remote attackercisco · cyber vision · CWE-392 | Средняя5,8 | — | 0,5 % | 4 мар. 2026 г. |
12Наблюдать | CVE-2025-59398Эксплойта нет | The OCPP implementation in libocpp before 0.26.2 allows a denial of service (EVerest crash) via JSON input larger than 255 characters, becaueverest · libocpp · CWE-392 | Низкая3,1 | — | 0,2 % | 15 сент. 2025 г. |
10Наблюдать | CVE-2023-48430Эксплойта нет | A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 2).siemens · sinec ins · CWE-392 | Низкая2,7 | — | 0,6 % | 12 дек. 2023 г. |
- CVE-2025-3274336Наблюдать
In ConnMan through 1.44, the lookup string in ns_resolv in dnsproxy.c can be NULL or an empty string when the TC (Truncated) bit is set in a
КритическаяCVSS 9,0Эксплойта нетEPSS 1 %connman · connman10 апр. 2025 г.
- CVE-2017-234232Наблюдать
SRX Series: MACsec failure to report errors
ВысокаяCVSS 8,1Эксплойта нетEPSS 1 %juniper · junos17 июл. 2017 г.
- CVE-2026-4224630Наблюдать
net-imap vulnerable to STARTTLS stripping via invalid response timing
ВысокаяCVSS 7,6Эксплойта нетEPSS 0 %ruby-lang · net\9 мая 2026 г.
- CVE-2025-2327028Наблюдать
NVIDIA Jetson Linux contains a vulnerability in UEFI Management mode, where an unprivileged local attacker may cause exposure of sensitive i
ВысокаяCVSS 7,1Эксплойта нетEPSS 0 %nvidia · jetson orin, igx orin and xavier devices17 июл. 2025 г.
- CVE-2024-1279726Наблюдать
RFC7250 handshakes with unauthenticated servers don't abort as expected
СредняяCVSS 6,3Эксплойта нетEPSS 3 %openssl · openssl11 февр. 2025 г.
- CVE-2025-2626826Наблюдать
DragonflyDB Dragonfly before 1.27.0 allows authenticated users to cause a denial of service (daemon crash) via a crafted Redis command.
СредняяCVSS 6,5Эксплойта нетEPSS 0 %dragonflydb · dragonfly17 апр. 2025 г.
- CVE-2026-2000523Наблюдать
Multiple Cisco products are affected by a vulnerability in the Snort 3 Detection Engine that could allow an unauthenticated, remote attacker
СредняяCVSS 5,8Эксплойта нетEPSS 1 %cisco · cyber vision4 мар. 2026 г.
- CVE-2025-5939812Наблюдать
The OCPP implementation in libocpp before 0.26.2 allows a denial of service (EVerest crash) via JSON input larger than 255 characters, becau
НизкаяCVSS 3,1Эксплойта нетEPSS 0 %everest · libocpp15 сент. 2025 г.
- CVE-2023-4843010Наблюдать
A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 2).
НизкаяCVSS 2,7Эксплойта нетEPSS 1 %siemens · sinec ins12 дек. 2023 г.