Skip to content
Noroxi

CWE-232 · 10 records

Improper Handling of Undefined Values

CVEs in this class

10 records

  • DNS message with invalid TSIG causes an assertion failure

    HighCVSS 7.5Proof of conceptEPSS 15%

    isc · bind 9May 21, 2025

  • CVE-2023-2968
    30Monitor

    Undefined variable usage in npm package "proxy" leads to remote denial of service

    HighCVSS 7.5No exploitEPSS 1%

    proxy project · proxyMay 30, 2023

  • BER/CER/DER decoder panics on invalid input

    HighCVSS 7.5No exploitEPSS 1%

    nlnetlabs · bcderSep 13, 2023

  • Crashes on parsing certain invalid RPKI objects

    HighCVSS 7.5No exploitEPSS 1%

    nlnetlabs · routinatorSep 13, 2023

  • A vulnerability in the Internet Key Exchange version 1 (IKEv1) implementation of Cisco IOS XE Software could allow an authenticated, remote

    HighCVSS 7.7No exploitEPSS 0%

    cisco · ios xeMay 7, 2025

  • Junos OS: MX Series: The FPC will crash on receiving a malformed CFM packet

    MediumCVSS 6.5No exploitEPSS 0%

    juniper · junosJul 14, 2023

  • A vulnerability in Cisco IOS XE Software could allow an authenticated, local attacker with level-15 privileges or an unauthenticated attacke

    MediumCVSS 6.7No exploitEPSS 0%

    cisco · cisco ios xe softwareSep 24, 2025

  • Junos OS and Junos OS Evolved: Denial of Service (DoS) vulnerability in RPD upon receipt of specific BGP update

    MediumCVSS 5.9No exploitEPSS 1%

    juniper · junosJul 20, 2022

  • Cisco IOS and IOS XE Software FXO Interface Destination Pattern Bypass Vulnerability

    MediumCVSS 5.3No exploitEPSS 1%

    cisco · iosSep 22, 2021

  • CVE-2021-3718
    18Monitor

    A denial of service vulnerability was reported in some ThinkPad models that could cause a system to crash when the Enhanced Biometrics setti

    MediumCVSS 4.6No exploitEPSS 0%

    lenovo · thinkpad 11e 3rd gen firmwareNov 12, 2021

All vulnerability classes