Перейти к содержимому
Noroxi

CWE-684 · 27 записей

Incorrect Provision of Specified Functionality

CVE этого класса

27 записей

  • CVE-2023-24845
    39Наблюдать

    A vulnerability has been identified in RUGGEDCOM i800, RUGGEDCOM i800NC, RUGGEDCOM i801, RUGGEDCOM i801NC, RUGGEDCOM i802, RUGGEDCOM i802NC,

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    siemens · ruggedcom ros8 авг. 2023 г.

  • CVE-2026-40685
    39Наблюдать

    In Exim before 4.99.2, when JSON lookup is enabled, an out-of-bounds heap write can occur when a JSON operator encounters malformed JSON in

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    exim · exim30 апр. 2026 г.

  • CVE-2024-50357
    39Наблюдать

    FutureNet NXR series routers provided by Century Systems Co., Ltd.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    century systems co., ltd. · futurenet nxr-g110 series29 нояб. 2024 г.

  • CVE-2026-52735
    37Наблюдать

    ZEBRA: Consensus divergence via P2SH sigop undercount in pure-Rust disabled-opcode parser

    КритическаяCVSS 9,3Эксплойта нетEPSS 1 %

    zcashfoundation · zebra18 авг. 2026 г.

  • CVE-2026-44597
    36Наблюдать

    Tor before 0.4.9.7 has an out-of-bounds read when an END, a TRUNCATE, or a TRUNCATED cell lacks a reason in its payload, aka TROVE-2026-011.

    КритическаяCVSS 9,1Эксплойта нетEPSS 1 %

    torproject · tor6 мая 2026 г.

  • CVE-2024-6425
    36Наблюдать

    Incorrect Provision of Specified Functionality vulnerability in MESbook

    КритическаяCVSS 9,1Эксплойта нетEPSS 1 %

    mesbook · mesbook1 июл. 2024 г.

  • CVE-2025-66384
    32Наблюдать

    app/Controller/EventsController.php in MISP before 2.5.24 has invalid logic in checking for uploaded file validity, related to tmp_name.

    ВысокаяCVSS 8,2Эксплойта нетEPSS 0 %

    misp · misp28 нояб. 2025 г.

  • CVE-2023-5363
    31Наблюдать

    Incorrect cipher key & IV length processing

    ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %

    openssl · openssl25 окт. 2023 г.

  • CVE-2025-47227
    31Наблюдать

    In the Production Environment extension in Netmake ScriptCase through 9.12.006 (23), the Administrator password reset mechanism is mishandle

    ВысокаяCVSS 7,5Proof of conceptEPSS 2 %

    scriptcase · scriptcase4 июл. 2025 г.

  • CVE-2026-40684
    30Наблюдать

    In Exim before 4.99.2, on systems using musl libc (not glibc), an attacker can crash the connection instance when malformed DNS data is pres

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    exim · exim30 апр. 2026 г.

  • CVE-2024-20317
    29Наблюдать

    Cisco IOS XR Software Layer 2 Services Denial of Service Vulnerability

    ВысокаяCVSS 7,4Эксплойта нетEPSS 0 %

    cisco · ios xr11 сент. 2024 г.

  • CVE-2023-4258
    26Наблюдать

    bt: mesh: vulnerability in provisioning protocol implementation on provisionee side

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    zephyrproject · zephyr25 сент. 2023 г.

  • CVE-2024-6502
    26Наблюдать

    Incorrect Provision of Specified Functionality in GitLab

    СредняяCVSS 6,5Эксплойта нетEPSS 0 %

    gitlab · gitlab22 авг. 2024 г.

  • CVE-2026-42255
    26Наблюдать

    Technitium DNS Server before 15.0 allows DNS traffic amplification via cyclic name server delegation.

    СредняяCVSS 6,5Эксплойта нетEPSS 0 %

    technitium · dnsserver26 апр. 2026 г.

  • CVE-2025-58325
    26Наблюдать

    An Incorrect Provision of Specified Functionality vulnerability [CWE-684] in FortiOS 7.6.0, 7.4.0 through 7.4.5, 7.2.5 through 7.2.10, 7.0.0

    СредняяCVSS 6,7Эксплойта нетEPSS 0 %

    fortinet · fortios14 окт. 2025 г.

  • CVE-2022-23728
    24Наблюдать

    Attacker can reset the device with AT Command in the process of rebooting the device.

    СредняяCVSS 6,1Эксплойта нетEPSS 0 %

    google · android21 янв. 2022 г.

  • CVE-2026-79126
    23Наблюдать

    Incorrect provision of specified functionality in Proxy in Google Chrome on on Windows prior to 152.0.7977.65 allowed an adjacent attacker t

    СредняяCVSS 5,9Эксплойта нетEPSS 0 %

    google · chrome25 авг. 2026 г.

  • CVE-2023-5158
    22Наблюдать

    Possible dos from guest to host invringh_kiov_advance in vhost driver at drivers/vhost/vringh.c

    СредняяCVSS 5,5Эксплойта нетEPSS 0 %

    linux · linux kernel25 сент. 2023 г.

  • CVE-2025-54567
    21Наблюдать

    hw/pci/pcie_sriov.c in QEMU through 10.0.3 mishandles the VF Enable bit write mask, a related issue to CVE-2024-26327.

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    qemu · qemu24 июл. 2025 г.

  • CVE-2024-5005
    17Наблюдать

    Incorrect Provision of Specified Functionality in GitLab

    СредняяCVSS 4,3Эксплойта нетEPSS 0 %

    gitlab · gitlab11 окт. 2024 г.

  • CVE-2024-8974
    17Наблюдать

    Incorrect Provision of Specified Functionality in GitLab

    СредняяCVSS 4,3Эксплойта нетEPSS 0 %

    gitlab · gitlab26 сент. 2024 г.

  • CVE-2020-11054
    14Наблюдать

    Incorrect Provision of Specified Functionality in qutebrowser

    НизкаяCVSS 3,5Эксплойта нетEPSS 2 %

    qutebrowser · qutebrowser7 мая 2020 г.

  • CVE-2025-54568
    14Наблюдать

    Akamai Rate Control alpha before 2025 allows attackers to send requests above the stipulated thresholds because the rate is measured separat

    НизкаяCVSS 3,7Эксплойта нетEPSS 0 %

    akamai · rate control25 июл. 2025 г.

  • CVE-2026-35379
    13Наблюдать

    uutils coreutils tr Local Logic Error and Data Integrity Issue in Character Class Handling

    НизкаяCVSS 3,3Эксплойта нетEPSS 0 %

    uutils · coreutils22 апр. 2026 г.

  • CVE-2026-35381
    13Наблюдать

    uutils coreutils cut Local Logic Error and Data Integrity Issue in Output Filtering

    НизкаяCVSS 3,3Эксплойта нетEPSS 0 %

    uutils · coreutils22 апр. 2026 г.

Все классы уязвимостей