CWE-232 · 10 records
Improper Handling of Undefined Values
CVEs in this class
10 records
| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
35Monitor | CVE-2025-40775Proof of concept | DNS message with invalid TSIG causes an assertion failureisc · bind 9 · CWE-232 | High7.5 | — | 15.2% | May 21, 2025 |
30Monitor | CVE-2023-2968No exploit | Undefined variable usage in npm package "proxy" leads to remote denial of serviceproxy project · proxy · CWE-232 | High7.5 | — | 1.5% | May 30, 2023 |
30Monitor | CVE-2023-39914No exploit | BER/CER/DER decoder panics on invalid inputnlnetlabs · bcder · CWE-232 | High7.5 | — | 0.7% | Sep 13, 2023 |
30Monitor | CVE-2023-39915No exploit | Crashes on parsing certain invalid RPKI objectsnlnetlabs · routinator · CWE-232 | High7.5 | — | 0.6% | Sep 13, 2023 |
30Monitor | CVE-2025-20192No exploit | A vulnerability in the Internet Key Exchange version 1 (IKEv1) implementation of Cisco IOS XE Software could allow an authenticated, remote cisco · ios xe · CWE-232 | High7.7 | — | 0.4% | May 7, 2025 |
26Monitor | CVE-2023-36848No exploit | Junos OS: MX Series: The FPC will crash on receiving a malformed CFM packetjuniper · junos · CWE-232 | Medium6.5 | — | 0.3% | Jul 14, 2023 |
26Monitor | CVE-2025-20314No exploit | A vulnerability in Cisco IOS XE Software could allow an authenticated, local attacker with level-15 privileges or an unauthenticated attackecisco · cisco ios xe software · CWE-232 | Medium6.7 | — | 0.2% | Sep 24, 2025 |
23Monitor | CVE-2022-22213No exploit | Junos OS and Junos OS Evolved: Denial of Service (DoS) vulnerability in RPD upon receipt of specific BGP updatejuniper · junos · CWE-232 | Medium5.9 | — | 0.7% | Jul 20, 2022 |
21Monitor | CVE-2021-34705No exploit | Cisco IOS and IOS XE Software FXO Interface Destination Pattern Bypass Vulnerabilitycisco · ios · CWE-232 | Medium5.3 | — | 1.0% | Sep 22, 2021 |
18Monitor | CVE-2021-3718No exploit | A denial of service vulnerability was reported in some ThinkPad models that could cause a system to crash when the Enhanced Biometrics settilenovo · thinkpad 11e 3rd gen firmware · CWE-232 | Medium4.6 | — | 0.2% | Nov 12, 2021 |
- CVE-2025-4077535Monitor
DNS message with invalid TSIG causes an assertion failure
HighCVSS 7.5Proof of conceptEPSS 15%isc · bind 9May 21, 2025
- CVE-2023-296830Monitor
Undefined variable usage in npm package "proxy" leads to remote denial of service
HighCVSS 7.5No exploitEPSS 1%proxy project · proxyMay 30, 2023
- CVE-2023-3991430Monitor
BER/CER/DER decoder panics on invalid input
HighCVSS 7.5No exploitEPSS 1%nlnetlabs · bcderSep 13, 2023
- CVE-2023-3991530Monitor
Crashes on parsing certain invalid RPKI objects
HighCVSS 7.5No exploitEPSS 1%nlnetlabs · routinatorSep 13, 2023
- CVE-2025-2019230Monitor
A vulnerability in the Internet Key Exchange version 1 (IKEv1) implementation of Cisco IOS XE Software could allow an authenticated, remote
HighCVSS 7.7No exploitEPSS 0%cisco · ios xeMay 7, 2025
- CVE-2023-3684826Monitor
Junos OS: MX Series: The FPC will crash on receiving a malformed CFM packet
MediumCVSS 6.5No exploitEPSS 0%juniper · junosJul 14, 2023
- CVE-2025-2031426Monitor
A vulnerability in Cisco IOS XE Software could allow an authenticated, local attacker with level-15 privileges or an unauthenticated attacke
MediumCVSS 6.7No exploitEPSS 0%cisco · cisco ios xe softwareSep 24, 2025
- CVE-2022-2221323Monitor
Junos OS and Junos OS Evolved: Denial of Service (DoS) vulnerability in RPD upon receipt of specific BGP update
MediumCVSS 5.9No exploitEPSS 1%juniper · junosJul 20, 2022
- CVE-2021-3470521Monitor
Cisco IOS and IOS XE Software FXO Interface Destination Pattern Bypass Vulnerability
MediumCVSS 5.3No exploitEPSS 1%cisco · iosSep 22, 2021
- CVE-2021-371818Monitor
A denial of service vulnerability was reported in some ThinkPad models that could cause a system to crash when the Enhanced Biometrics setti
MediumCVSS 4.6No exploitEPSS 0%lenovo · thinkpad 11e 3rd gen firmwareNov 12, 2021