Skip to content
Noroxi

CWE-417 · 12 records

Communication Channel Errors

CVEs in this class

12 records

  • Windows 8.3 path equivalence handling flaw allows LibreLogo script execution

    CriticalCVSS 9.8No exploitEPSS 3%

    libreoffice · libreofficeSep 6, 2019

  • October CMS build 412 is vulnerable to file path modification in asset move functionality resulting in creating creating malicious files on

    CriticalCVSS 9.8No exploitEPSS 1%

    octobercms · octoberNov 16, 2017

  • CVE-2017-6520
    37Monitor

    The Multicast DNS (mDNS) responder used in BOSE Soundtouch 30 inadvertently responds to IPv4 unicast queries with source addresses that are

    CriticalCVSS 9.1No exploitEPSS 2%

    bose · soundtouch 30Apr 30, 2017

  • CVE-2017-7760
    31Monitor

    The Mozilla Windows updater modifies some files to be updated by reading the original file and applying changes to it.

    HighCVSS 7.8No exploitEPSS 0%

    mozilla · firefoxJun 11, 2018

  • CVE-2016-9879
    30Monitor

    An issue was discovered in Pivotal Spring Security before 3.2.10, 4.1.x before 4.1.4, and 4.2.x before 4.2.1.

    HighCVSS 7.5No exploitEPSS 1%

    vmware · spring securityJan 6, 2017

  • CVE-2018-5254
    30Monitor

    Arista EOS before 4.20.2F allows remote BGP peers to cause a denial of service (Rib agent restart) via a malformed path attribute in an UPDA

    HighCVSS 7.5No exploitEPSS 1%

    arista · eosApr 12, 2018

  • On EPSON WF-2750 printers with firmware JP02I2, there is no filtering of print jobs.

    HighCVSS 7.5No exploitEPSS 1%

    epson · wf-2750 firmwareAug 30, 2018

  • Crypto++ 8.3.0 and earlier contains a timing side channel in ECDSA signature generation.

    MediumCVSS 5.9No exploitEPSS 3%

    cryptopp · crypto\+\+Jul 30, 2019

  • CVE-2017-3969
    23Monitor

    SB10192 - Network Security Management (NSM) - Abuse of communication channels vulnerability

    MediumCVSS 5.9No exploitEPSS 1%

    mcafee · network security managerApr 4, 2018

  • CVE-2017-2712
    21Monitor

    S3300 V100R006C05 have an Ethernet in the First Mile (EFM) flapping vulnerability due to the lack of type-length-value (TLV) consistency che

    MediumCVSS 5.3No exploitEPSS 1%

    huawei · s3300 firmwareNov 22, 2017

  • CVE-2017-8822
    14Monitor

    In Tor before 0.2.5.16, 0.2.6 through 0.2.8 before 0.2.8.17, 0.2.9 before 0.2.9.14, 0.3.0 before 0.3.0.13, and 0.3.1 before 0.3.1.9, relays

    LowCVSS 3.7No exploitEPSS 1%

    tor project · torDec 3, 2017

  • CVE-2018-6556
    13Monitor

    The lxc-user-nic component of LXC allows unprivileged users to open arbitrary files

    LowCVSS 3.3No exploitEPSS 0%

    canonical · ubuntu linuxAug 10, 2018

All vulnerability classes