Перейти к содержимому
Noroxi

CWE-233 · 29 записей

Improper Handling of Parameters

CVE этого класса

29 записей

  • CVE-2022-45182
    39Наблюдать

    Pi-Star_DV_Dash (for Pi-Star DV) before 5aa194d mishandles the module parameter.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    pistar · pi-star digital voice dashboard11 нояб. 2022 г.

  • CVE-2026-32998
    37Наблюдать

    This vulnerability in Veeam Service Provider Console allows for remote code execution.

    КритическаяCVSS 9,4Эксплойта нетEPSS 1 %

    veeam · service provider console28 мая 2026 г.

  • CVE-2025-52970
    35Наблюдать

    A improper handling of parameters in Fortinet FortiWeb versions 7.6.3 and below, versions 7.4.7 and below, versions 7.2.10 and below, and 7.

    ВысокаяCVSS 8,1Proof of conceptEPSS 10 %

    fortinet · fortiweb12 авг. 2025 г.

  • CVE-2023-20076
    35Наблюдать

    Cisco IOx Application Hosting Environment Command Injection Vulnerability

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    cisco · ic3000 industrial compute gateway12 февр. 2023 г.

  • CVE-2024-31808
    35Наблюдать

    TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remote code execution (RCE) vulnerability via the webWlanIdx parameter in

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    totolink · ex200 firmware8 апр. 2024 г.

  • CVE-2021-0269
    35Наблюдать

    Junos OS: J-Web can be compromised through reflected client-side HTTP parameter pollution attacks.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    juniper · junos22 апр. 2021 г.

  • CVE-2026-2370
    35Наблюдать

    Improper Handling of Parameters in GitLab

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    gitlab · gitlab29 мар. 2026 г.

  • CVE-2023-20514
    34Наблюдать

    Improper handling of parameters in the AMD Secure Processor (ASP) could allow a privileged attacker to pass an arbitrary memory value to fun

    ВысокаяCVSS 8,7Эксплойта нетEPSS 0 %

    amd · amd radeon™ rx 6000 series graphics products11 февр. 2026 г.

  • CVE-2023-7261
    31Наблюдать

    Inappropriate implementation in Google Updator prior to 1.3.36.351 in Google Chrome allowed a local attacker to perform privilege escalation

    ВысокаяCVSS 7,8Proof of conceptEPSS 0 %

    google · updater7 июн. 2024 г.

  • CVE-2021-1230
    30Наблюдать

    Cisco Nexus 9000 Series Fabric Switches ACI Mode BGP Route Installation Denial of Service Vulnerability

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    cisco · nx-os24 февр. 2021 г.

  • CVE-2022-3697
    30Наблюдать

    A flaw was found in Ansible in the amazon.aws collection when using the tower_callback parameter from the amazon.aws.ec2_instance module.

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    redhat · ansible28 окт. 2022 г.

  • CVE-2022-32261
    30Наблюдать

    A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1).

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    siemens · sinema remote connect server14 июн. 2022 г.

  • CVE-2022-22792
    30Наблюдать

    MobiSoft - MobiPlus User Take Over and Improper Handling of url Parameters

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    mobisoft - mobiplus project · mobisoft - mobiplus16 февр. 2022 г.

  • CVE-2023-26549
    30Наблюдать

    The SystemUI module has a vulnerability of repeated app restart due to improper parameters.

    ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %

    huawei · emui27 мар. 2023 г.

  • CVE-2025-55080
    28Наблюдать

    Improper Parameter Check in ThreadX Syscall Implementation

    ВысокаяCVSS 7,2Эксплойта нетEPSS 0 %

    eclipse · threadx15 окт. 2025 г.

  • CVE-2024-9329
    27Наблюдать

    Glassfish redirect to untrusted site

    СредняяCVSS 6,9Эксплойта нетEPSS 1 %

    eclipse · glassfish30 сент. 2024 г.

  • CVE-2018-25233
    27Наблюдать

    WebDrive 18.00.5057 Denial of Service via Secure WebDAV

    СредняяCVSS 6,9Эксплойта нетEPSS 0 %

    southrivertech · webdrive30 мар. 2026 г.

  • CVE-2021-45478
    26Наблюдать

    IDOR in Yordam Library Automation System

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    yordam · library automation system2 мар. 2023 г.

  • CVE-2021-45477
    26Наблюдать

    IDOR in Yordam Library Automation System

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    yordam · library automation system2 мар. 2023 г.

  • CVE-2020-10069
    26Наблюдать

    Zephyr Bluetooth unchecked packet data results in denial of service

    СредняяCVSS 6,5Эксплойта нетEPSS 0 %

    zephyrproject · zephyr25 мая 2021 г.

  • CVE-2024-20306
    26Наблюдать

    A vulnerability in the Unified Threat Defense (UTD) configuration CLI of Cisco IOS XE Software could allow an authenticated, local attacker

    СредняяCVSS 6,7Эксплойта нетEPSS 0 %

    cisco · ios xe27 мар. 2024 г.

  • CVE-2026-0515
    24Наблюдать

    Insufficient parameter validation in the QNX Neutrino kernel impacts versions of the QNX Software Development Platform and QNX OS for Safety

    СредняяCVSS 6,2Эксплойта нетEPSS 0 %

    blackberry ltd · qnx software development platform14 июл. 2026 г.

  • CVE-2023-1419
    23Наблюдать

    Debezium: script injection via connector parameter

    СредняяCVSS 5,9Эксплойта нетEPSS 0 %

    red hat · red hat build of debezium17 нояб. 2024 г.

  • CVE-2025-55078
    22Наблюдать

    Incomplete validation of kernel object pointers in system calls

    СредняяCVSS 5,7Эксплойта нетEPSS 0 %

    eclipse · threadx14 окт. 2025 г.

  • CVE-2024-25979
    21Наблюдать

    Msa-24-0002: forum search accepted random parameters in its url

    СредняяCVSS 5,3Эксплойта нетEPSS 1 %

    moodle · moodle19 февр. 2024 г.

Все классы уязвимостей