Перейти к содержимому
Noroxi

CWE-394 · 15 записей

Unexpected Status Code or Return Value

CVE этого класса

15 записей

  • CVE-2025-12515
    40В плане

    Systemic Internal Server Errors - HTTP 500 Response

    КритическаяCVSS 10,0Эксплойта нетEPSS 0 %

    azure-access · blu-ic4 firmware30 окт. 2025 г.

  • CVE-2025-12516
    40В плане

    Lack of Graceful Error Handling - HTTP 5xx Error

    КритическаяCVSS 10,0Эксплойта нетEPSS 0 %

    azure-access · blu-ic2 firmware30 окт. 2025 г.

  • CVE-2026-25085
    39Наблюдать

    Copeland XWEB and XWEB Pro Unexpected Status Code or Return Value

    КритическаяCVSS 9,8Эксплойта нетEPSS 0 %

    copeland · xweb 500b pro firmware26 февр. 2026 г.

  • CVE-2019-0066
    30Наблюдать

    Junos OS: A malformed IPv4 packet received by Junos in an NG-mVPN scenario may cause the routing protocol daemon (rpd) process to core

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    juniper · junos9 окт. 2019 г.

  • CVE-2023-25948
    30Наблюдать

    Server Data type confusion - info leak

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    honeywell · experion server13 июл. 2023 г.

  • CVE-2026-76956
    30Наблюдать

    In libexpat 2.8.2 and 2.8.3 before 2.8.4, misinterpretation of getentropy's return code leads to insufficient entropy, which results in bein

    ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %

    libexpat project · libexpat20 авг. 2026 г.

  • CVE-2025-23013
    29Наблюдать

    In Yubico pam-u2f before 1.3.1, local privilege escalation can sometimes occur.

    ВысокаяCVSS 7,3Эксплойта нетEPSS 0 %

    yubico · pam-u2f15 янв. 2025 г.

  • CVE-2024-1713
    28Наблюдать

    Plv8 Deferred Trigger Privilege Escalation

    ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %

    plv8 · plv814 мар. 2024 г.

  • CVE-2025-48510
    28Наблюдать

    Improper return value within AMD uProf can allow a local attacker to bypass KSLR, potentially resulting in loss of confidentiality or availa

    ВысокаяCVSS 7,1Эксплойта нетEPSS 0 %

    amd · uprof24 нояб. 2025 г.

  • CVE-2025-22854
    27Наблюдать

    Possible thread exhaustion from processing http responses in PingFederate Google Adapter

    СредняяCVSS 6,9Эксплойта нетEPSS 0 %

    ping identity · pingfederate15 июн. 2025 г.

  • CVE-2018-20802
    26Наблюдать

    Post-auth queries on compound index may crash mongod

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    mongodb · mongodb23 нояб. 2020 г.

  • CVE-2019-20924
    26Наблюдать

    Invariant in IndexBoundsBuilder

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    mongodb · mongodb23 нояб. 2020 г.

  • CVE-2023-28975
    18Наблюдать

    Junos OS: The kernel will crash when certain USB devices are inserted

    СредняяCVSS 4,6Эксплойта нетEPSS 0 %

    juniper · junos17 апр. 2023 г.

  • CVE-2026-73064
    11Наблюдать

    In Mbed TLS 3.2.0 though 3.6.6 and 4.0.0 through 4.1.0, an attacker who can cause an entropy source to fail can remove or inject bytes into

    НизкаяCVSS 2,9Эксплойта нетEPSS 0 %

    trustedfirmware · mbed tls6 дней назад

  • CVE-2023-48429
    10Наблюдать

    A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 2).

    НизкаяCVSS 2,7Эксплойта нетEPSS 1 %

    siemens · sinec ins12 дек. 2023 г.

Все классы уязвимостей