Перейти к содержимому
Noroxi

CWE-129 · 609 записей

Improper Validation of Array Index

CVE этого класса

610 записей

  • CVE-2022-48503
    66На этой неделе

    The issue was addressed with improved bounds checks.

    ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 3 %

    apple · safari14 авг. 2023 г.

  • CVE-2023-0755
    43В плане

    The affected products are vulnerable to an improper validation of array index, which could allow an attacker to crash the server and remote

    КритическаяCVSS 9,8Эксплойта нетEPSS 12 %

    ge · digital industrial gateway server23 февр. 2023 г.

  • CVE-2021-35592
    41В плане

    Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General).

    СредняяCVSS 6,3Эксплойта нетEPSS 52 %

    oracle · mysql cluster20 окт. 2021 г.

  • CVE-2016-9053
    41В плане

    An exploitable out-of-bounds indexing vulnerability exists within the RW fabric message particle type of Aerospike Database Server 3.10.0.3.

    КритическаяCVSS 9,8Эксплойта нетEPSS 7 %

    aerospike · database server21 февр. 2017 г.

  • CVE-2015-8366
    41В плане

    Array index error in smal_decode_segment function in LibRaw before 0.17.1 allows context-dependent attackers to cause memory errors and poss

    КритическаяCVSS 9,8Эксплойта нетEPSS 5 %

    libraw · libraw14 янв. 2020 г.

  • CVE-2021-35598
    40В плане

    Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General).

    СредняяCVSS 6,3Эксплойта нетEPSS 51 %

    oracle · mysql cluster20 окт. 2021 г.

  • CVE-2021-35594
    40В плане

    Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General).

    СредняяCVSS 6,3Эксплойта нетEPSS 51 %

    oracle · mysql cluster20 окт. 2021 г.

  • CVE-2020-35636
    40В плане

    A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1 in Nef_S2/SNC_io_parser.h SNC_io_p

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    cgal · computational geometry algorithms library4 мар. 2021 г.

  • CVE-2019-17212
    40В плане

    Buffer overflows were discovered in the CoAP library in Arm Mbed OS 5.14.0.

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    mbed · mbed5 нояб. 2019 г.

  • CVE-2020-28601
    40В плане

    A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1.

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    cgal · computational geometry algorithms library4 мар. 2021 г.

  • CVE-2020-35628
    40В плане

    A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1.

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    cgal · computational geometry algorithms library4 мар. 2021 г.

  • CVE-2020-28636
    40В плане

    A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1.

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    cgal · computational geometry algorithms library4 мар. 2021 г.

  • CVE-2020-27483
    40В плане

    Garmin Forerunner 235 before 8.20 is affected by: Array index error.

    КритическаяCVSS 9,9Эксплойта нетEPSS 2 %

    garmin · forerunner 235 firmware16 нояб. 2020 г.

  • CVE-2019-15784
    40В плане

    Secure Reliable Transport (SRT) through 1.3.4 has a CSndUList array overflow if there are many SRT connections.

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    srtalliance · secure reliable transport29 авг. 2019 г.

  • CVE-2020-27485
    40В плане

    Garmin Forerunner 235 before 8.20 is affected by: Array index error.

    КритическаяCVSS 9,9Эксплойта нетEPSS 2 %

    garmin · forerunner 235 firmware16 нояб. 2020 г.

  • CVE-2020-12022
    40В плане

    Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0.

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    advantech · webaccess8 мая 2020 г.

  • CVE-2024-24563
    39Наблюдать

    Vyper array negative index vulnerability

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    vyperlang · vyper7 февр. 2024 г.

  • CVE-2021-47548
    39Наблюдать

    ethernet: hisilicon: hns: hns_dsaf_misc: fix a possible array overflow in hns_dsaf_ge_srst_by_port()

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    linux · linux kernel24 мая 2024 г.

  • CVE-2014-9989
    39Наблюдать

    In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9615, MD

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    qualcomm · mdm9206 firmware18 апр. 2018 г.

  • CVE-2014-9990
    39Наблюдать

    In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9615, MD

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    qualcomm · mdm9206 firmware18 апр. 2018 г.

  • CVE-2014-10048
    39Наблюдать

    In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9650, MS

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    qualcomm · mdm9206 firmware18 апр. 2018 г.

  • CVE-2016-10454
    39Наблюдать

    In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 425, SD 430, SD 450, and SD 625, in a QTEE API

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    qualcomm · sd 425 firmware18 апр. 2018 г.

  • CVE-2022-26100
    39Наблюдать

    SAPCAR - version 7.22, does not contain sufficient input validation on the SAPCAR archive.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    sap · sapcar10 мар. 2022 г.

  • CVE-2023-28004
    39Наблюдать

    A CWE-129: Improper validation of an array index vulnerability exists where a specially crafted Ethernet request could result in denial o

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    schneider-electric · powerlogic hdpm6000 firmware18 апр. 2023 г.

  • CVE-2020-3633
    39Наблюдать

    Array out of bound may occur while playing mp3 file as no check is there on offset if it is greater than the buffer allocated or not in Snap

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    qualcomm · apq8009 firmware2 июн. 2020 г.

Все классы уязвимостей