Перейти к содержимому
Noroxi

CWE-704 · 197 записей

Incorrect Type Conversion or Cast

CVE этого класса

197 записей

  • CVE-2025-41646
    54В плане

    RevPi Webstatus application is vulnerable to an authentication bypass

    КритическаяCVSS 9,8Proof of conceptEPSS 52 %

    kunbus · revpi status6 июн. 2025 г.

  • CVE-2017-5115
    43В плане

    Type confusion in V8 in Google Chrome prior to 61.0.3163.79 for Windows allowed a remote attacker to potentially exploit object corruption v

    ВысокаяCVSS 8,8Эксплойта нетEPSS 26 %

    google · chrome27 окт. 2017 г.

  • CVE-2018-15981
    43В плане

    Flash Player versions 31.0.0.148 and earlier have a type confusion vulnerability.

    КритическаяCVSS 9,8Эксплойта нетEPSS 12 %

    adobe · flash player desktop runtime29 нояб. 2018 г.

  • CVE-2017-3106
    42В плане

    Adobe Flash Player versions 26.0.0.137 and earlier have an exploitable type confusion vulnerability when parsing SWF files.

    ВысокаяCVSS 8,8Proof of conceptEPSS 22 %

    adobe · flash player desktop runtime11 авг. 2017 г.

  • CVE-2018-4944
    42В плане

    Adobe Flash Player versions 29.0.0.140 and earlier have an exploitable type confusion vulnerability.

    КритическаяCVSS 9,8Эксплойта нетEPSS 9 %

    adobe · flash player19 мая 2018 г.

  • CVE-2018-12812
    42В плане

    Adobe Acrobat and Reader 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier versions have a Type Confusi

    КритическаяCVSS 9,8Эксплойта нетEPSS 9 %

    adobe · acrobat dc20 июл. 2018 г.

  • CVE-2015-3120
    42В плане

    Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR

    КритическаяCVSS 10,0Эксплойта нетEPSS 7 %

    adobe · flash player9 июл. 2015 г.

  • CVE-2018-3843
    41В плане

    An exploitable type confusion vulnerability exists in the way Foxit PDF Reader version 9.0.1.1049 parses files with associated file annotati

    ВысокаяCVSS 8,8Эксплойта нетEPSS 22 %

    foxitsoftware · foxit reader19 апр. 2018 г.

  • CVE-2021-28918
    41В плане

    Improper input validation of octal strings in netmask npm package v1.0.6 and below allows unauthenticated remote attackers to perform indete

    КритическаяCVSS 9,1Proof of conceptEPSS 17 %

    netmask project · netmask1 апр. 2021 г.

  • CVE-2016-7398
    41В плане

    A type confusion vulnerability in the merge_param() function of php_http_params.c in PHP's pecl-http extension 3.1.0beta2 (PHP 7) and earlie

    КритическаяCVSS 9,8Эксплойта нетEPSS 7 %

    php · ext-http6 сент. 2019 г.

  • CVE-2016-7979
    41В плане

    Ghostscript before 9.21 might allow remote attackers to bypass the SAFER mode protection mechanism and consequently execute arbitrary code b

    КритическаяCVSS 9,8Эксплойта нетEPSS 6 %

    artifex · ghostscript23 мая 2017 г.

  • CVE-2018-5007
    40В плане

    Adobe Flash Player 30.0.0.113 and earlier versions have a Type Confusion vulnerability.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 18 %

    adobe · flash player desktop runtime20 июл. 2018 г.

  • CVE-2018-12794
    40В плане

    Adobe Acrobat and Reader 2018.011.20040 and earlier, 2017.011.30080 and earlier, and 2015.006.30418 and earlier versions have a Type Confusi

    ВысокаяCVSS 8,8Эксплойта нетEPSS 16 %

    adobe · acrobat dc20 июл. 2018 г.

  • CVE-2026-15826
    40В плане

    User Profile Builder <= 3.16.4 - Unauthenticated Authentication Bypass via Type Confusion to Administrator Account Takeover via 'username' Parameter

    КритическаяCVSS 9,8Proof of conceptEPSS 4 %

    cozmoslabs · user profile builder – beautiful user registration forms, user profiles & user role editor15 авг. 2026 г.

  • CVE-2018-14403
    40В плане

    MP4NameFirstMatches in mp4util.cpp in MP4v2 2.0.0 mishandles substrings of atom names, leading to use of an inappropriate data type for asso

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    techsmith · mp4v219 июл. 2018 г.

  • CVE-2021-33318
    40В плане

    An Input Validation Vulnerability exists in Joel Christner .NET C# packages WatsonWebserver, IpMatcher 1.0.4.1 and below (IpMatcher) and 4.1

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    ipmatcher project · ipmatcher16 мая 2022 г.

  • CVE-2017-9183
    40В плане

    libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-bmp.c:309:7.

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    autotrace project · autotrace23 мая 2017 г.

  • CVE-2020-6151
    39Наблюдать

    A memory corruption vulnerability exists in the TIFF handle_COMPRESSION_PACKBITS functionality of Accusoft ImageGear 19.7.

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    accusoft · imagegear1 сент. 2020 г.

  • CVE-2020-25576
    39Наблюдать

    An issue was discovered in the rand_core crate before 0.4.2 for Rust.

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    rust-random · rand14 сент. 2020 г.

  • CVE-2011-1460
    39Наблюдать

    WebKit in Google Chrome before Blink M11 contains a bad cast to RenderBlock when anonymous blocks are renderblocks.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    google · blink5 нояб. 2019 г.

  • CVE-2011-2337
    39Наблюдать

    A wrong type is used for a return value from strlen in WebKit in Google Chrome before Blink M12 on 64-bit platforms.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    google · blink7 нояб. 2019 г.

  • CVE-2025-41648
    39Наблюдать

    Pilz: Authentication Bypass in IndustrialPI Webstatus

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    pilz · industrialpi 4 with industrialpi webstatus1 июл. 2025 г.

  • CVE-2023-6249
    39Наблюдать

    ipm: signed to unsigned conversion problem in esp32_ipm_send

    КритическаяCVSS 9,8Эксплойта нетEPSS 0 %

    zephyrproject · zephyr18 февр. 2024 г.

  • CVE-2026-58822
    39Наблюдать

    In multiple functions of ftsmooth.c, there is a possible memory safety issue due to improper casting.

    КритическаяCVSS 9,8Эксплойта нетEPSS 0 %

    google · android8 сент. 2026 г.

  • CVE-2018-4953
    38Наблюдать

    Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Type Confusi

    ВысокаяCVSS 8,8Эксплойта нетEPSS 9 %

    adobe · acrobat dc9 июл. 2018 г.

Все классы уязвимостей