CWE-372 · 9 записей
Incomplete Internal State Distinction
CVE этого класса
9 записей
| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
36Наблюдать | CVE-2024-22590Эксплойта нет | The TLS engine in Kwik commit 745fd4e2 does not track the current state of the connection.CWE-372 | Критическая9,1 | — | 0,6 % | 28 мая 2024 г. |
30Наблюдать | CVE-2020-27222Эксплойта нет | In Eclipse Californium version 2.3.0 to 2.6.0, the certificate based (x509 and RPK) DTLS handshakes accidentally fails, because the DTLS sereclipse · californium · CWE-372 | Высокая7,5 | — | 0,9 % | 3 февр. 2021 г. |
30Наблюдать | CVE-2023-4012Эксплойта нет | Incomplete Internal State Distinction in ntpsecntpsec · ntpsec · CWE-372 | Высокая7,5 | — | 0,5 % | 7 авг. 2023 г. |
28Наблюдать | CVE-2021-25735Proof of concept | Validating Admission Webhook does not observe some previous fieldskubernetes · kubernetes · CWE-372 | Средняя6,5 | — | 5,5 % | 6 сент. 2021 г. |
27Наблюдать | CVE-2026-41300Эксплойта нет | OpenClaw < 2026.3.31 - Preservation of Attacker-Discovered Endpoints in Remote Onboardingopenclaw · openclaw · CWE-372 | Средняя6,9 | — | 0,5 % | 20 апр. 2026 г. |
26Наблюдать | CVE-2023-36834Эксплойта нет | Junos OS: SRX 4600 and SRX 5000 Series: The receipt of specific genuine packets by SRXes configured for L2 transparency will cause a DoSjuniper · junos · CWE-372 | Средняя6,5 | — | 0,3 % | 14 июл. 2023 г. |
25Наблюдать | CVE-2026-41340Эксплойта нет | OpenClaw < 2026.3.31 - Authentication Boundary Bypass via Telegram Legacy allowFrom Migrationopenclaw · openclaw · CWE-372 | Средняя6,3 | — | 0,5 % | 23 апр. 2026 г. |
25Наблюдать | CVE-2026-41388Эксплойта нет | OpenClaw < 2026.3.31 - Configuration Rehydration via Empty-Array Revocation Handlingopenclaw · openclaw · CWE-372 | Средняя6,3 | — | 0,4 % | 28 апр. 2026 г. |
10Наблюдать | GHSA-86h5-xcpx-cfqcЭксплойта нет | ASA-2024-005: Potential slashing evasion during re-delegationGo · github.com/cosmos/cosmos-sdk · CWE-372 | Низкая2,5 | — | — | 27 февр. 2024 г. |
- CVE-2024-2259036Наблюдать
The TLS engine in Kwik commit 745fd4e2 does not track the current state of the connection.
КритическаяCVSS 9,1Эксплойта нетEPSS 1 %28 мая 2024 г.
- CVE-2020-2722230Наблюдать
In Eclipse Californium version 2.3.0 to 2.6.0, the certificate based (x509 and RPK) DTLS handshakes accidentally fails, because the DTLS ser
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %eclipse · californium3 февр. 2021 г.
- CVE-2023-401230Наблюдать
Incomplete Internal State Distinction in ntpsec
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %ntpsec · ntpsec7 авг. 2023 г.
- CVE-2021-2573528Наблюдать
Validating Admission Webhook does not observe some previous fields
СредняяCVSS 6,5Proof of conceptEPSS 6 %kubernetes · kubernetes6 сент. 2021 г.
- CVE-2026-4130027Наблюдать
OpenClaw < 2026.3.31 - Preservation of Attacker-Discovered Endpoints in Remote Onboarding
СредняяCVSS 6,9Эксплойта нетEPSS 0 %openclaw · openclaw20 апр. 2026 г.
- CVE-2023-3683426Наблюдать
Junos OS: SRX 4600 and SRX 5000 Series: The receipt of specific genuine packets by SRXes configured for L2 transparency will cause a DoS
СредняяCVSS 6,5Эксплойта нетEPSS 0 %juniper · junos14 июл. 2023 г.
- CVE-2026-4134025Наблюдать
OpenClaw < 2026.3.31 - Authentication Boundary Bypass via Telegram Legacy allowFrom Migration
СредняяCVSS 6,3Эксплойта нетEPSS 0 %openclaw · openclaw23 апр. 2026 г.
- CVE-2026-4138825Наблюдать
OpenClaw < 2026.3.31 - Configuration Rehydration via Empty-Array Revocation Handling
СредняяCVSS 6,3Эксплойта нетEPSS 0 %openclaw · openclaw28 апр. 2026 г.
- GHSA-86h5-xcpx-cfqc10Наблюдать
ASA-2024-005: Potential slashing evasion during re-delegation
НизкаяCVSS 2,5Эксплойта нетGo · github.com/cosmos/cosmos-sdk27 февр. 2024 г.