Перейти к содержимому
Noroxi

CWE-391 · 26 записей

Unchecked Error Condition

CVE этого класса

26 записей

  • CVE-2024-52316
    41В плане

    Apache Tomcat: Authentication bypass when using Jakarta Authentication API

    КритическаяCVSS 9,8Proof of conceptEPSS 6 %

    apache · tomcat18 нояб. 2024 г.

  • CVE-2017-12183
    40В плане

    xorg-x11-server before 1.19.5 was missing length validation in XFIXES extension allowing malicious X client to cause X server to crash or po

    КритическаяCVSS 9,8Эксплойта нетEPSS 4 %

    debian · debian linux24 янв. 2018 г.

  • CVE-2017-12180
    40В плане

    xorg-x11-server before 1.19.5 was missing length validation in XFree86 VidModeExtension allowing malicious X client to cause X server to cra

    КритическаяCVSS 9,8Эксплойта нетEPSS 4 %

    debian · debian linux24 янв. 2018 г.

  • CVE-2017-12178
    40В плане

    xorg-x11-server before 1.19.5 had wrong extra length check in ProcXIChangeHierarchy function allowing malicious X client to cause X server t

    КритическаяCVSS 9,8Эксплойта нетEPSS 4 %

    debian · debian linux24 янв. 2018 г.

  • CVE-2017-12179
    40В плане

    xorg-x11-server before 1.19.5 was vulnerable to integer overflow in (S)ProcXIBarrierReleasePointer functions allowing malicious X client to

    КритическаяCVSS 9,8Эксплойта нетEPSS 4 %

    debian · debian linux24 янв. 2018 г.

  • CVE-2017-12177
    40В плане

    xorg-x11-server before 1.19.5 was vulnerable to integer overflow in ProcDbeGetVisualInfo function allowing malicious X client to cause X ser

    КритическаяCVSS 9,8Эксплойта нетEPSS 4 %

    debian · debian linux24 янв. 2018 г.

  • CVE-2017-12186
    40В плане

    xorg-x11-server before 1.19.5 was missing length validation in X-Resource extension allowing malicious X client to cause X server to crash o

    КритическаяCVSS 9,8Эксплойта нетEPSS 4 %

    debian · debian linux24 янв. 2018 г.

  • CVE-2017-12182
    40В плане

    xorg-x11-server before 1.19.5 was missing length validation in XFree86 DRI extension allowing malicious X client to cause X server to crash

    КритическаяCVSS 9,8Эксплойта нетEPSS 4 %

    debian · debian linux24 янв. 2018 г.

  • CVE-2017-12181
    40В плане

    xorg-x11-server before 1.19.5 was missing length validation in XFree86 DGA extension allowing malicious X client to cause X server to crash

    КритическаяCVSS 9,8Эксплойта нетEPSS 4 %

    debian · debian linux24 янв. 2018 г.

  • CVE-2017-12184
    40В плане

    xorg-x11-server before 1.19.5 was missing length validation in XINERAMA extension allowing malicious X client to cause X server to crash or

    КритическаяCVSS 9,8Эксплойта нетEPSS 4 %

    debian · debian linux24 янв. 2018 г.

  • CVE-2017-12185
    40В плане

    xorg-x11-server before 1.19.5 was missing length validation in MIT-SCREEN-SAVER extension allowing malicious X client to cause X server to c

    КритическаяCVSS 9,8Эксплойта нетEPSS 4 %

    debian · debian linux24 янв. 2018 г.

  • CVE-2017-12176
    40В плане

    xorg-x11-server before 1.19.5 was missing extra length validation in ProcEstablishConnection function allowing malicious X client to cause X

    КритическаяCVSS 9,8Эксплойта нетEPSS 4 %

    debian · debian linux24 янв. 2018 г.

  • CVE-2017-12187
    40В плане

    xorg-x11-server before 1.19.5 was missing length validation in RENDER extension allowing malicious X client to cause X server to crash or po

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    debian · debian linux24 янв. 2018 г.

  • GHSA-5rph-q42j-36j9
    39Наблюдать

    Duplicate Advisory: Picklescan has pickle parsing logic flaw that leads to malicious pickle file bypass

    КритическаяCVSS 9,8Эксплойта нет

    PyPI · picklescan17 июн. 2026 г.

  • CVE-2025-71325
    37Наблюдать

    picklescan - Detection Bypass via STACK_GLOBAL Opcode Parsing Logic Flaw

    КритическаяCVSS 9,3Эксплойта нетEPSS 1 %

    picklescan · picklescan17 июн. 2026 г.

  • CVE-2026-74900
    37Наблюдать

    openssl_encrypt before 1.4.0 Weak Shared Secret via PQC Simulation Mode

    КритическаяCVSS 9,3Эксплойта нетEPSS 1 %

    jahlives · openssl encrypt17 авг. 2026 г.

  • CVE-2016-10526
    34Наблюдать

    A common setup to deploy to gh-pages on every commit via a CI system is to expose a github token to ENV and to use it directly in the auth p

    ВысокаяCVSS 8,6Эксплойта нетEPSS 2 %

    grunt-gh-pages project · grunt-gh-pages31 мая 2018 г.

  • CVE-2024-23326
    32Наблюдать

    Envoy incorrectly accepts HTTP 200 response for entering upgrade mode

    ВысокаяCVSS 8,2Эксплойта нетEPSS 0 %

    envoyproxy · envoy4 июн. 2024 г.

  • CVE-2019-14853
    31Наблюдать

    An error-handling flaw was found in python-ecdsa before version 0.13.3.

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    python-ecdsa project · python-ecdsa26 нояб. 2019 г.

  • CVE-2017-7496
    28Наблюдать

    fedora-arm-installer up to and including 1.99.16 is vulnerable to local privilege escalation due to lack of checking the error condition of

    ВысокаяCVSS 7,0Эксплойта нетEPSS 0 %

    fedoraproject · arm installer26 июн. 2017 г.

  • CVE-2020-14383
    27Наблюдать

    A flaw was found in samba's DNS server.

    СредняяCVSS 6,5Эксплойта нетEPSS 2 %

    samba · samba1 дек. 2020 г.

  • CVE-2022-22160
    26Наблюдать

    Junos OS: MX Series: The bbe-smgd process crashes if an unsupported configuration exists and a PPPoE client sends a specific message

    СредняяCVSS 6,5Эксплойта нетEPSS 0 %

    juniper · junos18 янв. 2022 г.

  • CVE-2022-20849
    24Наблюдать

    Cisco IOS XR Software Broadband Network Gateway PPPoE Denial of Service Vulnerability

    СредняяCVSS 6,1Эксплойта нетEPSS 0 %

    cisco · ios xr15 нояб. 2024 г.

  • CVE-2018-1091
    22Наблюдать

    In the flush_tmregs_to_thread function in arch/powerpc/kernel/ptrace.c in the Linux kernel before 4.13.5, a guest kernel crash can be trigge

    СредняяCVSS 5,5Эксплойта нетEPSS 0 %

    linux · linux kernel27 мар. 2018 г.

  • CVE-2023-0572
    21Наблюдать

    Unchecked Error Condition in froxlor/froxlor

    СредняяCVSS 5,3Эксплойта нетEPSS 1 %

    froxlor · froxlor29 янв. 2023 г.

Все классы уязвимостей