CWE-662 · 42 записей
Improper Synchronization
CVE этого класса
42 записей
| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2018-15555Эксплойта нет | On Telus Actiontec WEB6000Q v1.1.02.22 devices, an attacker can login with root level access with the user "root" and password "admin" by usactiontec · web6000q firmware · CWE-662 | Критическая9,8 | — | 3,0 % | 28 июн. 2019 г. |
36Наблюдать | CVE-2024-32644Эксплойта нет | Evmos' transaction execution not accounting for all state transition after interaction with precompilesevmos · evmos · CWE-662 | Критическая9,1 | — | 0,9 % | 19 апр. 2024 г. |
35Наблюдать | CVE-2016-8368Эксплойта нет | An issue was discovered in Mitsubishi Electric Automation MELSEC-Q series Ethernet interface modules QJ71E71-100, all versions, QJ71E71-B5, mitsubishielectric · qj71e71-100 firmware · CWE-662 | Высокая8,6 | — | 2,6 % | 13 февр. 2017 г. |
35Наблюдать | CVE-2026-53277Эксплойта нет | KVM: arm64: Take the SRCU lock for page table walks in fault injection and AT emulationlinux · linux kernel · CWE-662 | Высокая8,8 | — | 0,1 % | 25 июн. 2026 г. |
32Наблюдать | GHSA-6447-269v-g68mЭксплойта нет | Mezo: ERC-20 bridgeOut burn can be erased by a stale StateDB overwrite leading to full L1 bridge drainGo · github.com/mezo-org/mezod · CWE-662 | Высокая8,0 | — | — | 6 мая 2026 г. |
31Наблюдать | CVE-2019-17185Эксплойта нет | In FreeRADIUS 3.0.x before 3.0.20, the EAP-pwd module used a global OpenSSL BN_CTX instance to handle all handshakes.freeradius · freeradius · CWE-662 | Высокая7,5 | — | 2,2 % | 20 мар. 2020 г. |
31Наблюдать | CVE-2018-4027Эксплойта нет | An exploitable denial-of-service vulnerability exists in the XML_UploadFile Wi-Fi command of the NT9665X Chipset firmware, running on the Ananker-in · roav dashcam a1 firmware · CWE-662 | Высокая7,5 | — | 1,7 % | 13 мая 2019 г. |
31Наблюдать | CVE-2020-36208Эксплойта нет | An issue was discovered in the conquer-once crate before 0.3.2 for Rust.conquer-once project · conquer-once · CWE-662 | Высокая7,8 | — | 0,4 % | 26 янв. 2021 г. |
31Наблюдать | CVE-2019-5675Эксплойта нет | NVIDIA Windows GPU Display driver software for Windows (all versions) contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handlnvidia · gpu driver · CWE-662 | Высокая7,8 | — | 0,4 % | 10 мая 2019 г. |
30Наблюдать | CVE-2021-20592Эксплойта нет | Missing synchronization vulnerability in GOT2000 series GT27 model communication driver versions 01.19.000 through 01.39.010, GT25 model commitsubishielectric · gt softgot2000 · CWE-662 | Высокая7,5 | — | 1,5 % | 5 авг. 2021 г. |
30Наблюдать | CVE-2019-16137Эксплойта нет | An issue was discovered in the spin crate before 0.5.2 for Rust, when RwLock is used.spin-rs project · spin-rs · CWE-662 | Высокая7,5 | — | 1,4 % | 9 сент. 2019 г. |
30Наблюдать | CVE-2020-36215Эксплойта нет | An issue was discovered in the hashconsing crate before 1.1.0 for Rust.hashconsing project · hashconsing · CWE-662 | Высокая7,5 | — | 1,4 % | 26 янв. 2021 г. |
30Наблюдать | CVE-2020-14098Эксплойта нет | The login verification can be bypassed by using the problem that the time is not synchronized after the router restarts.mi · ax1800 firmware · CWE-662 | Высокая7,5 | — | 1,2 % | 13 янв. 2021 г. |
30Наблюдать | CVE-2024-7409Эксплойта нет | Qemu: denial of service via improper synchronization in qemu nbd server during socket closurered hat · red hat enterprise linux 8 · CWE-662 | Высокая7,5 | — | 1,0 % | 5 авг. 2024 г. |
28Наблюдать | CVE-2020-36211Эксплойта нет | An issue was discovered in the gfwx crate before 0.3.0 for Rust.devolutions · gfwx · CWE-662 | Высокая7,0 | — | 0,3 % | 26 янв. 2021 г. |
28Наблюдать | CVE-2020-36207Эксплойта нет | An issue was discovered in the aovec crate through 2020-12-10 for Rust.aovec project · aovec · CWE-662 | Высокая7,0 | — | 0,3 % | 26 янв. 2021 г. |
28Наблюдать | CVE-2020-36206Эксплойта нет | An issue was discovered in the rusb crate before 0.7.0 for Rust.rusb project · rusb · CWE-662 | Высокая7,0 | — | 0,3 % | 26 янв. 2021 г. |
27Наблюдать | CVE-2020-14059Эксплойта нет | An issue was discovered in Squid 5.x before 5.0.3.squid-cache · squid · CWE-662 | Средняя6,5 | — | 4,4 % | 30 июн. 2020 г. |
26Наблюдать | CVE-2021-36305Эксплойта нет | Dell PowerScale OneFS contains an Unsynchronized Access to Shared Data in a Multithreaded Context in SMB CA handling.dell · emc powerscale onefs · CWE-662 | Средняя6,5 | — | 0,8 % | 12 нояб. 2021 г. |
26Наблюдать | CVE-2022-25210Эксплойта нет | Jenkins Convertigo Mobile Platform Plugin 1.1 and earlier uses static fields to store job configuration information, allowing attackers withjenkins · convertigo mobile platform · CWE-662 | Средняя6,5 | — | 0,8 % | 15 февр. 2022 г. |
26Наблюдать | CVE-2019-17344Эксплойта нет | An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service by leveraging a long-running operaxen · xen · CWE-662 | Средняя6,5 | — | 0,4 % | 7 окт. 2019 г. |
25Наблюдать | CVE-2022-32643Эксплойта нет | In ccd, there is a possible use after free due to a race condition.google · android · CWE-662 | Средняя6,4 | — | 0,2 % | 6 февр. 2023 г. |
25Наблюдать | CVE-2022-32642Эксплойта нет | In ccd, there is a possible memory corruption due to a race condition.google · android · CWE-662 | Средняя6,4 | — | 0,1 % | 6 февр. 2023 г. |
25Наблюдать | CVE-2022-32609Эксплойта нет | In vcu, there is a possible use after free due to a race condition.google · android · CWE-662 | Средняя6,4 | — | 0,1 % | 8 нояб. 2022 г. |
25Наблюдать | CVE-2022-32610Эксплойта нет | In vcu, there is a possible use after free due to a race condition.google · android · CWE-662 | Средняя6,4 | — | 0,1 % | 8 нояб. 2022 г. |
- CVE-2018-1555540В плане
On Telus Actiontec WEB6000Q v1.1.02.22 devices, an attacker can login with root level access with the user "root" and password "admin" by us
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %actiontec · web6000q firmware28 июн. 2019 г.
- CVE-2024-3264436Наблюдать
Evmos' transaction execution not accounting for all state transition after interaction with precompiles
КритическаяCVSS 9,1Эксплойта нетEPSS 1 %evmos · evmos19 апр. 2024 г.
- CVE-2016-836835Наблюдать
An issue was discovered in Mitsubishi Electric Automation MELSEC-Q series Ethernet interface modules QJ71E71-100, all versions, QJ71E71-B5,
ВысокаяCVSS 8,6Эксплойта нетEPSS 3 %mitsubishielectric · qj71e71-100 firmware13 февр. 2017 г.
- CVE-2026-5327735Наблюдать
KVM: arm64: Take the SRCU lock for page table walks in fault injection and AT emulation
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %linux · linux kernel25 июн. 2026 г.
- GHSA-6447-269v-g68m32Наблюдать
Mezo: ERC-20 bridgeOut burn can be erased by a stale StateDB overwrite leading to full L1 bridge drain
ВысокаяCVSS 8,0Эксплойта нетGo · github.com/mezo-org/mezod6 мая 2026 г.
- CVE-2019-1718531Наблюдать
In FreeRADIUS 3.0.x before 3.0.20, the EAP-pwd module used a global OpenSSL BN_CTX instance to handle all handshakes.
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %freeradius · freeradius20 мар. 2020 г.
- CVE-2018-402731Наблюдать
An exploitable denial-of-service vulnerability exists in the XML_UploadFile Wi-Fi command of the NT9665X Chipset firmware, running on the An
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %anker-in · roav dashcam a1 firmware13 мая 2019 г.
- CVE-2020-3620831Наблюдать
An issue was discovered in the conquer-once crate before 0.3.2 for Rust.
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %conquer-once project · conquer-once26 янв. 2021 г.
- CVE-2019-567531Наблюдать
NVIDIA Windows GPU Display driver software for Windows (all versions) contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handl
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %nvidia · gpu driver10 мая 2019 г.
- CVE-2021-2059230Наблюдать
Missing synchronization vulnerability in GOT2000 series GT27 model communication driver versions 01.19.000 through 01.39.010, GT25 model com
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %mitsubishielectric · gt softgot20005 авг. 2021 г.
- CVE-2019-1613730Наблюдать
An issue was discovered in the spin crate before 0.5.2 for Rust, when RwLock is used.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %spin-rs project · spin-rs9 сент. 2019 г.
- CVE-2020-3621530Наблюдать
An issue was discovered in the hashconsing crate before 1.1.0 for Rust.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %hashconsing project · hashconsing26 янв. 2021 г.
- CVE-2020-1409830Наблюдать
The login verification can be bypassed by using the problem that the time is not synchronized after the router restarts.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %mi · ax1800 firmware13 янв. 2021 г.
- CVE-2024-740930Наблюдать
Qemu: denial of service via improper synchronization in qemu nbd server during socket closure
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %red hat · red hat enterprise linux 85 авг. 2024 г.
- CVE-2020-3621128Наблюдать
An issue was discovered in the gfwx crate before 0.3.0 for Rust.
ВысокаяCVSS 7,0Эксплойта нетEPSS 0 %devolutions · gfwx26 янв. 2021 г.
- CVE-2020-3620728Наблюдать
An issue was discovered in the aovec crate through 2020-12-10 for Rust.
ВысокаяCVSS 7,0Эксплойта нетEPSS 0 %aovec project · aovec26 янв. 2021 г.
- CVE-2020-3620628Наблюдать
An issue was discovered in the rusb crate before 0.7.0 for Rust.
ВысокаяCVSS 7,0Эксплойта нетEPSS 0 %rusb project · rusb26 янв. 2021 г.
- CVE-2020-1405927Наблюдать
An issue was discovered in Squid 5.x before 5.0.3.
СредняяCVSS 6,5Эксплойта нетEPSS 4 %squid-cache · squid30 июн. 2020 г.
- CVE-2021-3630526Наблюдать
Dell PowerScale OneFS contains an Unsynchronized Access to Shared Data in a Multithreaded Context in SMB CA handling.
СредняяCVSS 6,5Эксплойта нетEPSS 1 %dell · emc powerscale onefs12 нояб. 2021 г.
- CVE-2022-2521026Наблюдать
Jenkins Convertigo Mobile Platform Plugin 1.1 and earlier uses static fields to store job configuration information, allowing attackers with
СредняяCVSS 6,5Эксплойта нетEPSS 1 %jenkins · convertigo mobile platform15 февр. 2022 г.
- CVE-2019-1734426Наблюдать
An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service by leveraging a long-running opera
СредняяCVSS 6,5Эксплойта нетEPSS 0 %xen · xen7 окт. 2019 г.
- CVE-2022-3264325Наблюдать
In ccd, there is a possible use after free due to a race condition.
СредняяCVSS 6,4Эксплойта нетEPSS 0 %google · android6 февр. 2023 г.
- CVE-2022-3264225Наблюдать
In ccd, there is a possible memory corruption due to a race condition.
СредняяCVSS 6,4Эксплойта нетEPSS 0 %google · android6 февр. 2023 г.
- CVE-2022-3260925Наблюдать
In vcu, there is a possible use after free due to a race condition.
СредняяCVSS 6,4Эксплойта нетEPSS 0 %google · android8 нояб. 2022 г.
- CVE-2022-3261025Наблюдать
In vcu, there is a possible use after free due to a race condition.
СредняяCVSS 6,4Эксплойта нетEPSS 0 %google · android8 нояб. 2022 г.