Перейти к содержимому
Noroxi

CWE-138 · 13 записей

Improper Neutralization of Special Elements

CVE этого класса

13 записей

  • CVE-2023-42117
    41В плане

    Exim Improper Neutralization of Special Elements Remote Code Execution Vulnerability

    КритическаяCVSS 9,8Эксплойта нетEPSS 7 %

    exim · exim2 мая 2024 г.

  • CVE-2023-24531
    39Наблюдать

    Output of "go env" does not sanitize values in cmd/go

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    go toolchain · cmd/go2 июл. 2024 г.

  • CVE-2016-0750
    36Наблюдать

    The hotrod java client in infinispan before 9.1.0.Final automatically deserializes bytearray message contents in certain events.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    infinispan · infinispan11 сент. 2018 г.

  • CVE-2022-2429
    32Наблюдать

    Ultimate SMS Notifications for WooCommerce <= 1.4.1 - CSV Injection

    ВысокаяCVSS 8,0Эксплойта нетEPSS 1 %

    ultimatesmsnotifications · ultimate sms notifications for woocommerce6 сент. 2022 г.

  • CVE-2026-32178
    31Наблюдать

    .NET Spoofing Vulnerability

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    microsoft · .net14 апр. 2026 г.

  • CVE-2024-38133
    31Наблюдать

    Windows Kernel Elevation of Privilege Vulnerability

    ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %

    microsoft · windows 10 180913 авг. 2024 г.

  • CVE-2026-26129
    30Наблюдать

    M365 Copilot Information Disclosure Vulnerability

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    microsoft · 365 copilot chat7 мая 2026 г.

  • CVE-2026-55841
    30Наблюдать

    Graylog: Fortigate syslog message parser can be exploited to modify or delete fields from the original message

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    graylog2 · graylog2-server28 авг. 2026 г.

  • CVE-2024-51500
    30Наблюдать

    Failure to check for packets from the broadcast address allows potential DDoS amplification attack in Meshtastic firmware

    ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %

    meshtastic · meshtastic firmware4 нояб. 2024 г.

  • CVE-2022-0024
    28Наблюдать

    PAN-OS: Improper Neutralization Vulnerability Leads to Unintended Program Execution During Configuration Commit

    ВысокаяCVSS 7,2Эксплойта нетEPSS 2 %

    paloaltonetworks · pan-os11 мая 2022 г.

  • CVE-2023-22288
    21Наблюдать

    Email HTML Injection

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    checkmk · checkmk20 мар. 2023 г.

  • CVE-2026-20009
    21Наблюдать

    Cisco Secure Firewall Adaptive Security Appliance SSH Partial Private Key Authentication Bypass Vulnerability

    СредняяCVSS 5,3Эксплойта нетEPSS 0 %

    cisco · adaptive security appliance software4 мар. 2026 г.

  • CVE-2025-48939
    16Наблюдать

    tarteaucitron.js vulnerable to DOM Clobbering via document.currentScript

    СредняяCVSS 4,2Эксплойта нетEPSS 0 %

    amauri · tarteaucitronjs3 июл. 2025 г.

Все классы уязвимостей