Перейти к содержимому
Noroxi

CWE-170 · 42 записей

Improper Null Termination

CVE этого класса

42 записей

  • CVE-2021-22931
    46В плане

    Node.js before 16.6.0, 14.17.4, and 12.22.4 is vulnerable to Remote Code Execution, XSS, Application crashes due to missing input validation

    КритическаяCVSS 9,8Эксплойта нетEPSS 22 %

    nodejs · node.js16 авг. 2021 г.

  • CVE-2019-8275
    40В плане

    UltraVNC revision 1211 has multiple improper null termination vulnerabilities in VNC server code, which result in out-of-bound data being ac

    КритическаяCVSS 9,8Эксплойта нетEPSS 4 %

    uvnc · ultravnc8 мар. 2019 г.

  • CVE-2021-31886
    40В плане

    A vulnerability has been identified in APOGEE MBC (PPC) (BACnet) (All versions), APOGEE MBC (PPC) (P2 Ethernet) (All versions), APOGEE MEC (

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    siemens · nucleus net9 нояб. 2021 г.

  • CVE-2021-31884
    39Наблюдать

    A vulnerability has been identified in APOGEE MBC (PPC) (BACnet) (All versions), APOGEE MBC (PPC) (P2 Ethernet) (All versions), APOGEE MEC (

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    siemens · capital vstar9 нояб. 2021 г.

  • CVE-2021-1411
    39Наблюдать

    Cisco Jabber Desktop and Mobile Client Software Vulnerabilities

    КритическаяCVSS 9,9Эксплойта нетEPSS 1 %

    cisco · jabber24 мар. 2021 г.

  • CVE-2026-42010
    39Наблюдать

    Gnutls: gnutls: authentication bypass via nul character in username

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    gnu · gnutls7 мая 2026 г.

  • CVE-2026-5067
    39Наблюдать

    Out-of-bounds read/write in HTTP WebSocket upgrade via non-null-terminated Sec-WebSocket-Key

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    zephyrproject · zephyr9 июн. 2026 г.

  • CVE-2026-8721
    39Наблюдать

    Crypt::OpenSSL::PKCS12 versions through 1.94 for Perl truncates passwords with embedded NULLs

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    jonasbn · crypt::openssl::pkcs1217 мая 2026 г.

  • CVE-2021-31888
    36Наблюдать

    A vulnerability has been identified in APOGEE MBC (PPC) (BACnet) (All versions), APOGEE MBC (PPC) (P2 Ethernet) (All versions), APOGEE MEC (

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    siemens · nucleus net9 нояб. 2021 г.

  • CVE-2021-31887
    36Наблюдать

    A vulnerability has been identified in APOGEE MBC (PPC) (BACnet) (All versions), APOGEE MBC (PPC) (P2 Ethernet) (All versions), APOGEE MEC (

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    siemens · nucleus net9 нояб. 2021 г.

  • CVE-2024-45288
    33Наблюдать

    Multiple vulnerabilities in libnv

    ВысокаяCVSS 8,4Эксплойта нетEPSS 0 %

    freebsd · freebsd5 сент. 2024 г.

  • CVE-2019-11044
    32Наблюдать

    link() silently truncates after a null byte on Windows

    ВысокаяCVSS 7,5Эксплойта нетEPSS 5 %

    php · php22 дек. 2019 г.

  • CVE-2023-36906
    31Наблюдать

    Windows Cryptographic Services Information Disclosure Vulnerability

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    microsoft · windows 108 авг. 2023 г.

  • CVE-2023-36907
    31Наблюдать

    Windows Cryptographic Services Information Disclosure Vulnerability

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    microsoft · windows 108 авг. 2023 г.

  • CVE-2024-21442
    31Наблюдать

    Windows USB Print Driver Elevation of Privilege Vulnerability

    ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %

    microsoft · windows 10 21h212 мар. 2024 г.

  • CVE-2024-43474
    30Наблюдать

    Microsoft SQL Server Information Disclosure Vulnerability

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    microsoft · sql server 201710 сент. 2024 г.

  • CVE-2022-47515
    30Наблюдать

    An issue was discovered in drachtio-server before 0.8.20.

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    drachtio · drachtio-server18 дек. 2022 г.

  • CVE-2026-70587
    30Наблюдать

    Windows Remote Desktop Protocol Information Disclosure Vulnerability

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    microsoft · windows 10 16078 сент. 2026 г.

  • CVE-2023-24021
    30Наблюдать

    Incorrect handling of '\0' bytes in file uploads in ModSecurity before 2.9.7 may allow for Web Application Firewall bypasses and buffer over

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    trustwave · modsecurity20 янв. 2023 г.

  • CVE-2024-31197
    30Наблюдать

    Improper Null Termination in libfluid_msg library

    ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %

    opennetworking · libfluid msg18 сент. 2024 г.

  • CVE-2025-67790
    30Наблюдать

    An issue was discovered in DriveLock 24.1 before 24.1.6, 24.2 before 24.2.7, and 25.1 before 25.1.5.

    ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %

    drivelock · drivelock17 дек. 2025 г.

  • CVE-2024-31484
    29Наблюдать

    A vulnerability has been identified in CPC80 Central Processing/Communication (All versions < V16.41), CPCI85 Central Processing/Communicati

    ВысокаяCVSS 7,3Эксплойта нетEPSS 0 %

    siemens · cpc80 central processing/communication14 мая 2024 г.

  • CVE-2021-1469
    28Наблюдать

    Cisco Jabber Desktop and Mobile Client Software Vulnerabilities

    ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %

    cisco · jabber24 мар. 2021 г.

  • CVE-2025-2026
    28Наблюдать

    The NPort 6100-G2/6200-G2 Series is affected by a high-severity vulnerability (CVE-2025-2026) that allows remote attackers to execute a null

    ВысокаяCVSS 7,1Proof of conceptEPSS 0 %

    moxa · nport 6100-g2/6200-g2 series31 дек. 2025 г.

  • CVE-2021-1120
    28Наблюдать

    NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where a string provided by the guest OS may not be p

    ВысокаяCVSS 7,0Эксплойта нетEPSS 0 %

    nvidia · virtual gpu29 окт. 2021 г.

Все классы уязвимостей