İçeriğe atla
Noroxi

CWE-704 · 197 kayıt

Incorrect Type Conversion or Cast

Bu sınıftaki CVE’ler

197 kayıt

  • CVE-2025-41646
    54Planlayın

    RevPi Webstatus application is vulnerable to an authentication bypass

    KritikCVSS 9,8Kavram kanıtıEPSS %52

    kunbus · revpi status6 Haz 2025

  • CVE-2017-5115
    43Planlayın

    Type confusion in V8 in Google Chrome prior to 61.0.3163.79 for Windows allowed a remote attacker to potentially exploit object corruption v

    YüksekCVSS 8,8İstismar yokEPSS %26

    google · chrome27 Eki 2017

  • CVE-2018-15981
    43Planlayın

    Flash Player versions 31.0.0.148 and earlier have a type confusion vulnerability.

    KritikCVSS 9,8İstismar yokEPSS %12

    adobe · flash player desktop runtime29 Kas 2018

  • CVE-2017-3106
    42Planlayın

    Adobe Flash Player versions 26.0.0.137 and earlier have an exploitable type confusion vulnerability when parsing SWF files.

    YüksekCVSS 8,8Kavram kanıtıEPSS %22

    adobe · flash player desktop runtime11 Ağu 2017

  • CVE-2018-4944
    42Planlayın

    Adobe Flash Player versions 29.0.0.140 and earlier have an exploitable type confusion vulnerability.

    KritikCVSS 9,8İstismar yokEPSS %9

    adobe · flash player19 May 2018

  • CVE-2018-12812
    42Planlayın

    Adobe Acrobat and Reader 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier versions have a Type Confusi

    KritikCVSS 9,8İstismar yokEPSS %9

    adobe · acrobat dc20 Tem 2018

  • CVE-2015-3120
    42Planlayın

    Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR

    KritikCVSS 10,0İstismar yokEPSS %7

    adobe · flash player9 Tem 2015

  • CVE-2018-3843
    41Planlayın

    An exploitable type confusion vulnerability exists in the way Foxit PDF Reader version 9.0.1.1049 parses files with associated file annotati

    YüksekCVSS 8,8İstismar yokEPSS %22

    foxitsoftware · foxit reader19 Nis 2018

  • CVE-2021-28918
    41Planlayın

    Improper input validation of octal strings in netmask npm package v1.0.6 and below allows unauthenticated remote attackers to perform indete

    KritikCVSS 9,1Kavram kanıtıEPSS %17

    netmask project · netmask1 Nis 2021

  • CVE-2016-7398
    41Planlayın

    A type confusion vulnerability in the merge_param() function of php_http_params.c in PHP's pecl-http extension 3.1.0beta2 (PHP 7) and earlie

    KritikCVSS 9,8İstismar yokEPSS %7

    php · ext-http6 Eyl 2019

  • CVE-2016-7979
    41Planlayın

    Ghostscript before 9.21 might allow remote attackers to bypass the SAFER mode protection mechanism and consequently execute arbitrary code b

    KritikCVSS 9,8İstismar yokEPSS %6

    artifex · ghostscript23 May 2017

  • CVE-2018-5007
    40Planlayın

    Adobe Flash Player 30.0.0.113 and earlier versions have a Type Confusion vulnerability.

    YüksekCVSS 8,8İstismar yokEPSS %18

    adobe · flash player desktop runtime20 Tem 2018

  • CVE-2018-12794
    40Planlayın

    Adobe Acrobat and Reader 2018.011.20040 and earlier, 2017.011.30080 and earlier, and 2015.006.30418 and earlier versions have a Type Confusi

    YüksekCVSS 8,8İstismar yokEPSS %16

    adobe · acrobat dc20 Tem 2018

  • CVE-2026-15826
    40Planlayın

    User Profile Builder <= 3.16.4 - Unauthenticated Authentication Bypass via Type Confusion to Administrator Account Takeover via 'username' Parameter

    KritikCVSS 9,8Kavram kanıtıEPSS %4

    cozmoslabs · user profile builder – beautiful user registration forms, user profiles & user role editor15 Ağu 2026

  • CVE-2018-14403
    40Planlayın

    MP4NameFirstMatches in mp4util.cpp in MP4v2 2.0.0 mishandles substrings of atom names, leading to use of an inappropriate data type for asso

    KritikCVSS 9,8İstismar yokEPSS %3

    techsmith · mp4v219 Tem 2018

  • CVE-2021-33318
    40Planlayın

    An Input Validation Vulnerability exists in Joel Christner .NET C# packages WatsonWebserver, IpMatcher 1.0.4.1 and below (IpMatcher) and 4.1

    KritikCVSS 9,8İstismar yokEPSS %2

    ipmatcher project · ipmatcher16 May 2022

  • CVE-2017-9183
    40Planlayın

    libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-bmp.c:309:7.

    KritikCVSS 9,8İstismar yokEPSS %2

    autotrace project · autotrace23 May 2017

  • CVE-2020-6151
    39İzleyin

    A memory corruption vulnerability exists in the TIFF handle_COMPRESSION_PACKBITS functionality of Accusoft ImageGear 19.7.

    KritikCVSS 9,8İstismar yokEPSS %2

    accusoft · imagegear1 Eyl 2020

  • CVE-2020-25576
    39İzleyin

    An issue was discovered in the rand_core crate before 0.4.2 for Rust.

    KritikCVSS 9,8İstismar yokEPSS %2

    rust-random · rand14 Eyl 2020

  • CVE-2011-1460
    39İzleyin

    WebKit in Google Chrome before Blink M11 contains a bad cast to RenderBlock when anonymous blocks are renderblocks.

    KritikCVSS 9,8İstismar yokEPSS %1

    google · blink5 Kas 2019

  • CVE-2011-2337
    39İzleyin

    A wrong type is used for a return value from strlen in WebKit in Google Chrome before Blink M12 on 64-bit platforms.

    KritikCVSS 9,8İstismar yokEPSS %1

    google · blink7 Kas 2019

  • CVE-2025-41648
    39İzleyin

    Pilz: Authentication Bypass in IndustrialPI Webstatus

    KritikCVSS 9,8İstismar yokEPSS %1

    pilz · industrialpi 4 with industrialpi webstatus1 Tem 2025

  • CVE-2023-6249
    39İzleyin

    ipm: signed to unsigned conversion problem in esp32_ipm_send

    KritikCVSS 9,8İstismar yokEPSS %0

    zephyrproject · zephyr18 Şub 2024

  • CVE-2026-58822
    39İzleyin

    In multiple functions of ftsmooth.c, there is a possible memory safety issue due to improper casting.

    KritikCVSS 9,8İstismar yokEPSS %0

    google · android8 Eyl 2026

  • CVE-2018-4953
    38İzleyin

    Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Type Confusi

    YüksekCVSS 8,8İstismar yokEPSS %9

    adobe · acrobat dc9 Tem 2018

Tüm zafiyet sınıfları