CWE-394 · 15 kayıt
Unexpected Status Code or Return Value
Bu sınıftaki CVE’ler
15 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2025-12515İstismar yok | Systemic Internal Server Errors - HTTP 500 Responseazure-access · blu-ic4 firmware · CWE-394 | Kritik10,0 | — | %0,3 | 30 Eki 2025 |
40Planlayın | CVE-2025-12516İstismar yok | Lack of Graceful Error Handling - HTTP 5xx Errorazure-access · blu-ic2 firmware · CWE-394 | Kritik10,0 | — | %0,3 | 30 Eki 2025 |
39İzleyin | CVE-2026-25085İstismar yok | Copeland XWEB and XWEB Pro Unexpected Status Code or Return Valuecopeland · xweb 500b pro firmware · CWE-394 | Kritik9,8 | — | %0,5 | 26 Şub 2026 |
30İzleyin | CVE-2019-0066İstismar yok | Junos OS: A malformed IPv4 packet received by Junos in an NG-mVPN scenario may cause the routing protocol daemon (rpd) process to corejuniper · junos · CWE-394 | Yüksek7,5 | — | %1,4 | 9 Eki 2019 |
30İzleyin | CVE-2023-25948İstismar yok | Server Data type confusion - info leakhoneywell · experion server · CWE-394 | Yüksek7,5 | — | %0,6 | 13 Tem 2023 |
30İzleyin | CVE-2026-76956İstismar yok | In libexpat 2.8.2 and 2.8.3 before 2.8.4, misinterpretation of getentropy's return code leads to insufficient entropy, which results in beinlibexpat project · libexpat · CWE-394 | Yüksek7,5 | — | %0,3 | 20 Ağu 2026 |
29İzleyin | CVE-2025-23013İstismar yok | In Yubico pam-u2f before 1.3.1, local privilege escalation can sometimes occur.yubico · pam-u2f · CWE-394 | Yüksek7,3 | — | %0,4 | 15 Oca 2025 |
28İzleyin | CVE-2024-1713İstismar yok | Plv8 Deferred Trigger Privilege Escalationplv8 · plv8 · CWE-394 | Yüksek7,2 | — | %0,6 | 14 Mar 2024 |
28İzleyin | CVE-2025-48510İstismar yok | Improper return value within AMD uProf can allow a local attacker to bypass KSLR, potentially resulting in loss of confidentiality or availaamd · uprof · CWE-394 | Yüksek7,1 | — | %0,1 | 24 Kas 2025 |
27İzleyin | CVE-2025-22854İstismar yok | Possible thread exhaustion from processing http responses in PingFederate Google Adapterping identity · pingfederate · CWE-394 | Orta6,9 | — | %0,3 | 15 Haz 2025 |
26İzleyin | CVE-2018-20802İstismar yok | Post-auth queries on compound index may crash mongodmongodb · mongodb · CWE-394 | Orta6,5 | — | %1,5 | 23 Kas 2020 |
26İzleyin | CVE-2019-20924İstismar yok | Invariant in IndexBoundsBuildermongodb · mongodb · CWE-394 | Orta6,5 | — | %1,3 | 23 Kas 2020 |
18İzleyin | CVE-2023-28975İstismar yok | Junos OS: The kernel will crash when certain USB devices are insertedjuniper · junos · CWE-394 | Orta4,6 | — | %0,3 | 17 Nis 2023 |
11İzleyin | CVE-2026-73064İstismar yok | In Mbed TLS 3.2.0 though 3.6.6 and 4.0.0 through 4.1.0, an attacker who can cause an entropy source to fail can remove or inject bytes into trustedfirmware · mbed tls · CWE-394 | Düşük2,9 | — | %0,1 | 6 gün önce |
10İzleyin | CVE-2023-48429İstismar yok | A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 2).siemens · sinec ins · CWE-394 | Düşük2,7 | — | %0,6 | 12 Ara 2023 |
- CVE-2025-1251540Planlayın
Systemic Internal Server Errors - HTTP 500 Response
KritikCVSS 10,0İstismar yokEPSS %0azure-access · blu-ic4 firmware30 Eki 2025
- CVE-2025-1251640Planlayın
Lack of Graceful Error Handling - HTTP 5xx Error
KritikCVSS 10,0İstismar yokEPSS %0azure-access · blu-ic2 firmware30 Eki 2025
- CVE-2026-2508539İzleyin
Copeland XWEB and XWEB Pro Unexpected Status Code or Return Value
KritikCVSS 9,8İstismar yokEPSS %0copeland · xweb 500b pro firmware26 Şub 2026
- CVE-2019-006630İzleyin
Junos OS: A malformed IPv4 packet received by Junos in an NG-mVPN scenario may cause the routing protocol daemon (rpd) process to core
YüksekCVSS 7,5İstismar yokEPSS %1juniper · junos9 Eki 2019
- CVE-2023-2594830İzleyin
Server Data type confusion - info leak
YüksekCVSS 7,5İstismar yokEPSS %1honeywell · experion server13 Tem 2023
- CVE-2026-7695630İzleyin
In libexpat 2.8.2 and 2.8.3 before 2.8.4, misinterpretation of getentropy's return code leads to insufficient entropy, which results in bein
YüksekCVSS 7,5İstismar yokEPSS %0libexpat project · libexpat20 Ağu 2026
- CVE-2025-2301329İzleyin
In Yubico pam-u2f before 1.3.1, local privilege escalation can sometimes occur.
YüksekCVSS 7,3İstismar yokEPSS %0yubico · pam-u2f15 Oca 2025
- CVE-2024-171328İzleyin
Plv8 Deferred Trigger Privilege Escalation
YüksekCVSS 7,2İstismar yokEPSS %1plv8 · plv814 Mar 2024
- CVE-2025-4851028İzleyin
Improper return value within AMD uProf can allow a local attacker to bypass KSLR, potentially resulting in loss of confidentiality or availa
YüksekCVSS 7,1İstismar yokEPSS %0amd · uprof24 Kas 2025
- CVE-2025-2285427İzleyin
Possible thread exhaustion from processing http responses in PingFederate Google Adapter
OrtaCVSS 6,9İstismar yokEPSS %0ping identity · pingfederate15 Haz 2025
- CVE-2018-2080226İzleyin
Post-auth queries on compound index may crash mongod
OrtaCVSS 6,5İstismar yokEPSS %1mongodb · mongodb23 Kas 2020
- CVE-2019-2092426İzleyin
Invariant in IndexBoundsBuilder
OrtaCVSS 6,5İstismar yokEPSS %1mongodb · mongodb23 Kas 2020
- CVE-2023-2897518İzleyin
Junos OS: The kernel will crash when certain USB devices are inserted
OrtaCVSS 4,6İstismar yokEPSS %0juniper · junos17 Nis 2023
- CVE-2026-7306411İzleyin
In Mbed TLS 3.2.0 though 3.6.6 and 4.0.0 through 4.1.0, an attacker who can cause an entropy source to fail can remove or inject bytes into
DüşükCVSS 2,9İstismar yokEPSS %0trustedfirmware · mbed tls6 gün önce
- CVE-2023-4842910İzleyin
A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 2).
DüşükCVSS 2,7İstismar yokEPSS %1siemens · sinec ins12 Ara 2023