Перейти к содержимому
Noroxi

CWE-399 · 2 632 записей

Resource Management Errors

CVE этого класса

2 632 записей

  • CVE-2010-0806
    90Срочно

    Use-after-free vulnerability in the Peer Objects component (aka iepeers.dll) in Microsoft Internet Explorer 6, 6 SP1, and 7 allows remote at

    ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 82 %

    microsoft · internet explorer10 мар. 2010 г.

  • CVE-2009-3103
    68На этой неделе

    Array index error in the SMBv2 protocol implementation in srv2.sys in Microsoft Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold a

    КритическаяCVSS 10,0Готовый эксплойтEPSS 92 %

    microsoft · windows server 20088 сент. 2009 г.

  • CVE-2009-0075
    63На этой неделе

    Microsoft Internet Explorer 7 does not properly handle errors during attempted access to deleted objects, which allows remote attackers to e

    КритическаяCVSS 9,3Готовый эксплойтEPSS 85 %

    microsoft · internet explorer10 февр. 2009 г.

  • CVE-2018-0156
    63На этой неделе

    A vulnerability in the Smart Install feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker

    ВысокаяCVSS 7,5KEVГотовый эксплойтEPSS 9 %

    cisco · ios28 мар. 2018 г.

  • CVE-2011-0065
    62На этой неделе

    Use-after-free vulnerability in Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey before 2.0.14, allows remote attackers

    КритическаяCVSS 10,0Готовый эксплойтEPSS 74 %

    mozilla · firefox7 мая 2011 г.

  • CVE-2018-0154
    62На этой неделе

    A vulnerability in the crypto engine of the Cisco Integrated Services Module for VPN (ISM-VPN) running Cisco IOS Software could allow an una

    ВысокаяCVSS 7,5KEVГотовый эксплойтEPSS 7 %

    cisco · ios28 мар. 2018 г.

  • CVE-2017-12231
    62На этой неделе

    A vulnerability in the implementation of Network Address Translation (NAT) functionality in Cisco IOS 12.4 through 15.6 could allow an unaut

    ВысокаяCVSS 7,5KEVГотовый эксплойтEPSS 7 %

    cisco · ios28 сент. 2017 г.

  • CVE-2017-12237
    62На этой неделе

    A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco IOS 15.0 through 15.6 and Cisco IOS XE 3.5 through 16.5 could

    ВысокаяCVSS 7,5KEVГотовый эксплойтEPSS 7 %

    cisco · ios28 сент. 2017 г.

  • CVE-2017-6627
    62На этой неделе

    A vulnerability in the UDP processing code of Cisco IOS 15.1, 15.2, and 15.4 and IOS XE 3.14 through 3.18 could allow an unauthenticated, re

    ВысокаяCVSS 7,5KEVГотовый эксплойтEPSS 6 %

    cisco · ios7 сент. 2017 г.

  • CVE-2010-3971
    61На этой неделе

    Use-after-free vulnerability in the CSharedStyleSheet::Notify function in the Cascading Style Sheets (CSS) parser in mshtml.dll, as used in

    КритическаяCVSS 9,3Готовый эксплойтEPSS 82 %

    microsoft · internet explorer22 дек. 2010 г.

  • CVE-2008-4844
    57В плане

    Use-after-free vulnerability in the CRecordInstance::TransferToDestination function in mshtml.dll in Microsoft Internet Explorer 5.01, 6, 6

    КритическаяCVSS 9,3Готовый эксплойтEPSS 67 %

    microsoft · internet explorer11 дек. 2008 г.

  • CVE-2017-12232
    57В плане

    A vulnerability in the implementation of a protocol in Cisco Integrated Services Routers Generation 2 (ISR G2) Routers running Cisco IOS 15.

    СредняяCVSS 6,5KEVГотовый эксплойтEPSS 2 %

    cisco · ios28 сент. 2017 г.

  • CVE-2017-12238
    57В плане

    A vulnerability in the Virtual Private LAN Service (VPLS) code of Cisco IOS 15.0 through 15.4 for Cisco Catalyst 6800 Series Switches could

    СредняяCVSS 6,5KEVГотовый эксплойтEPSS 2 %

    cisco · ios28 сент. 2017 г.

  • CVE-2009-2526
    56В плане

    Microsoft Windows Vista Gold, SP1, and SP2 and Server 2008 Gold and SP2 do not properly validate fields in SMBv2 packets, which allows remot

    ВысокаяCVSS 7,8Proof of conceptEPSS 82 %

    microsoft · windows server 200814 окт. 2009 г.

  • CVE-2015-1868
    56В плане

    The label decompression functionality in PowerDNS Recursor 3.5.x, 3.6.x before 3.6.3, and 3.7.x before 3.7.2 and Authoritative (Auth) Server

    ВысокаяCVSS 7,8Эксплойта нетEPSS 82 %

    powerdns · authoritative18 мая 2015 г.

  • CVE-2018-0161
    56В плане

    A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS Software running on certain models of Cisco Catalyst

    СредняяCVSS 6,3KEVГотовый эксплойтEPSS 4 %

    cisco · ios28 мар. 2018 г.

  • CVE-2015-0015
    55В плане

    Microsoft Windows Server 2003 SP2, Server 2008 SP2 and R2 SP1, and Server 2012 Gold and R2 allow remote attackers to cause a denial of servi

    ВысокаяCVSS 7,8Эксплойта нетEPSS 79 %

    microsoft · windows server 200313 янв. 2015 г.

  • CVE-2010-0477
    55В плане

    The SMB client in Microsoft Windows Server 2008 R2 and Windows 7 does not properly handle (1) SMBv1 and (2) SMBv2 response packets, which al

    КритическаяCVSS 10,0Proof of conceptEPSS 50 %

    microsoft · windows 714 апр. 2010 г.

  • CVE-2013-0025
    54В плане

    Use-after-free vulnerability in Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code via a crafted web site that

    КритическаяCVSS 9,3Готовый эксплойтEPSS 56 %

    microsoft · internet explorer13 февр. 2013 г.

  • CVE-2018-0179
    54В плане

    Multiple vulnerabilities in the Login Enhancements (Login Block) feature of Cisco IOS Software could allow an unauthenticated, remote attack

    СредняяCVSS 5,9KEVГотовый эксплойтEPSS 5 %

    cisco · ios28 мар. 2018 г.

  • CVE-2018-0180
    54В плане

    Multiple vulnerabilities in the Login Enhancements (Login Block) feature of Cisco IOS Software could allow an unauthenticated, remote attack

    СредняяCVSS 5,9KEVГотовый эксплойтEPSS 5 %

    cisco · ios28 мар. 2018 г.

  • CVE-2008-3013
    53В плане

    gdiplus.dll in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2008,

    КритическаяCVSS 9,3Proof of conceptEPSS 52 %

    microsoft · digital image suite10 сент. 2008 г.

  • CVE-2008-3656
    52В плане

    Algorithmic complexity vulnerability in the WEBrick::HTTPUtils.split_header_value function in WEBrick::HTTP::DefaultFileHandler in WEBrick i

    ВысокаяCVSS 7,8Готовый эксплойтEPSS 70 %

    ruby-lang · ruby12 авг. 2008 г.

  • CVE-2009-1138
    52В плане

    The LDAP service in Active Directory on Microsoft Windows 2000 SP4 does not properly free memory for LDAP and LDAPS requests, which allows r

    КритическаяCVSS 10,0Эксплойта нетEPSS 39 %

    microsoft · windows 200010 июн. 2009 г.

  • CVE-2008-4023
    52В плане

    Active Directory in Microsoft Windows 2000 SP4 does not properly allocate memory for (1) LDAP and (2) LDAPS requests, which allows remote at

    КритическаяCVSS 10,0Эксплойта нетEPSS 39 %

    microsoft · windows 200014 окт. 2008 г.

Все классы уязвимостей