CWE-118 · 24 kayıt
Incorrect Access of Indexable Resource ('Range Error')
Bu sınıftaki CVE’ler
24 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2015-2002İstismar yok | The ESRI ArcGis Runtime SDK before 10.2.6-2 for Android might allow attackers to execute arbitrary code by leveraging a finalize method in aesri · arcgisruntime sdk · CWE-118 | Kritik9,8 | — | %2,3 | 29 Mar 2018 |
40Planlayın | CVE-2015-2000İstismar yok | The Jumio SDK before 1.5.0 for Android might allow attackers to execute arbitrary code by leveraging a finalize method in a Serializable clajumio · jumio sdk · CWE-118 | Kritik9,8 | — | %2,0 | 29 Mar 2018 |
40Planlayın | CVE-2015-2003İstismar yok | The PJSIP PJSUA2 SDK before SVN Changeset 51322 for Android might allow attackers to execute arbitrary code by leveraging a finalize method pjsip · pjsua2 sdk · CWE-118 | Kritik9,8 | — | %2,0 | 29 Mar 2018 |
40Planlayın | CVE-2015-2004İstismar yok | The GraceNote GNSDK SDK before SVN Changeset 1.1.7 for Android might allow attackers to execute arbitrary code by leveraging a finalize methgracenote · gnsdk · CWE-118 | Kritik9,8 | — | %2,0 | 29 Mar 2018 |
40Planlayın | CVE-2015-2001İstismar yok | The MetaIO SDK before 6.0.2.1 for Android might allow attackers to execute arbitrary code by leveraging a finalize method in a Serializable metaio · metaio sdk · CWE-118 | Kritik9,8 | — | %2,0 | 29 Mar 2018 |
39İzleyin | CVE-2016-10495İstismar yok | In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9635M, made changes to map the scan type valuequalcomm · mdm9635m firmware · CWE-118 | Kritik9,8 | — | %1,2 | 18 Nis 2018 |
39İzleyin | CVE-2015-9142İstismar yok | In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9645, MDM9650, SD 210/SD 212/SD 205, SD 400, Squalcomm · mdm9645 firmware · CWE-118 | Kritik9,8 | — | %1,2 | 18 Nis 2018 |
39İzleyin | CVE-2014-9411İstismar yok | In all Qualcomm products with Android releases from CAF using the Linux kernel, the use of an out-of-range pointer offset is potentially posgoogle · android · CWE-118 | Kritik9,8 | — | %0,8 | 18 Ağu 2017 |
35İzleyin | CVE-2022-38072İstismar yok | An improper array index validation vulnerability exists in the stl_fix_normal_directions functionality of ADMesh Master Commit 767a105 and vadmesh project · admesh · CWE-118 | Yüksek8,8 | — | %1,1 | 3 Nis 2023 |
32İzleyin | CVE-2017-5884İstismar yok | gtk-vnc before 0.7.0 does not properly check boundaries of subrectangle-containing tiles, which allows remote servers to execute arbitrary cfedoraproject · fedora · CWE-118 | Yüksek7,8 | — | %2,2 | 28 Şub 2017 |
31İzleyin | CVE-2023-37922İstismar yok | Multiple arbitrary write vulnerabilities exist in the VCD sorted bsearch functionality of GTKWave 3.3.115.tonybybell · gtkwave · CWE-118 | Yüksek7,8 | — | %0,4 | 8 Oca 2024 |
31İzleyin | CVE-2023-37923İstismar yok | Multiple arbitrary write vulnerabilities exist in the VCD sorted bsearch functionality of GTKWave 3.3.115.tonybybell · gtkwave · CWE-118 | Yüksek7,8 | — | %0,4 | 8 Oca 2024 |
31İzleyin | CVE-2023-37921İstismar yok | Multiple arbitrary write vulnerabilities exist in the VCD sorted bsearch functionality of GTKWave 3.3.115.tonybybell · gtkwave · CWE-118 | Yüksek7,8 | — | %0,4 | 8 Oca 2024 |
31İzleyin | CVE-2026-50367İstismar yok | Windows Sensor Data Service Elevation of Privilege Vulnerabilitymicrosoft · windows 10 1809 · CWE-118 | Yüksek7,8 | — | %0,3 | 14 Tem 2026 |
30İzleyin | CVE-2020-3235İstismar yok | Cisco IOS and IOS XE Software Simple Network Management Protocol Denial of Service Vulnerabilitycisco · ios · CWE-118 | Yüksek7,7 | — | %1,6 | 3 Haz 2020 |
30İzleyin | CVE-2020-3369İstismar yok | Cisco SD-WAN vEdge Routers Denial of Service Vulnerabilitycisco · sd-wan firmware · CWE-118 | Yüksek7,5 | — | %1,4 | 16 Tem 2020 |
30İzleyin | CVE-2025-54628İstismar yok | Vulnerability of incomplete verification information in the communication module.huawei · emui · CWE-118 | Yüksek7,5 | — | %0,2 | 5 Ağu 2025 |
27İzleyin | CVE-2017-10872İstismar yok | H2O version 2.2.3 and earlier allows remote attackers to cause a denial of service in the server via unspecified vectors.dena · h2o · CWE-118 | Orta6,5 | — | %1,9 | 22 Ara 2017 |
27İzleyin | CVE-2024-43524İstismar yok | Windows Mobile Broadband Driver Remote Code Execution Vulnerabilitymicrosoft · windows 10 1809 · CWE-118 | Orta6,8 | — | %0,7 | 8 Eki 2024 |
26İzleyin | CVE-2023-0201İstismar yok | NVIDIA DGX-2 SBIOS contains a vulnerability in Bds, where a user with high privileges can cause a write beyond the bounds of an indexable renvidia · bmc · CWE-118 | Orta6,7 | — | %0,2 | 21 Nis 2023 |
26İzleyin | CVE-2025-48902İstismar yok | Vulnerability of uncontrolled system resource applications in the setting module Impact: Successful exploitation of this vulnerability may ahuawei · emui · CWE-118 | Orta6,6 | — | %0,1 | 6 Haz 2025 |
22İzleyin | CVE-2019-6130İstismar yok | Artifex MuPDF 1.14.0 has a SEGV in the function fz_load_page of the fitz/document.c file, as demonstrated by mutool.artifex · mupdf · CWE-118 | Orta5,5 | — | %1,6 | 11 Oca 2019 |
22İzleyin | CVE-2022-36402İstismar yok | There is an int overflow vulnerability in vmwgfx driverlinux · linux kernel · CWE-118 | Orta5,5 | — | %0,6 | 16 Eyl 2022 |
21İzleyin | CVE-2017-0302İstismar yok | In F5 BIG-IP APM 12.0.0 through 12.1.2 and 13.0.0, an authenticated user with an established access session to the BIG-IP APM system may be f5 · big-ip access policy manager · CWE-118 | Orta5,3 | — | %0,7 | 9 May 2017 |
- CVE-2015-200240Planlayın
The ESRI ArcGis Runtime SDK before 10.2.6-2 for Android might allow attackers to execute arbitrary code by leveraging a finalize method in a
KritikCVSS 9,8İstismar yokEPSS %2esri · arcgisruntime sdk29 Mar 2018
- CVE-2015-200040Planlayın
The Jumio SDK before 1.5.0 for Android might allow attackers to execute arbitrary code by leveraging a finalize method in a Serializable cla
KritikCVSS 9,8İstismar yokEPSS %2jumio · jumio sdk29 Mar 2018
- CVE-2015-200340Planlayın
The PJSIP PJSUA2 SDK before SVN Changeset 51322 for Android might allow attackers to execute arbitrary code by leveraging a finalize method
KritikCVSS 9,8İstismar yokEPSS %2pjsip · pjsua2 sdk29 Mar 2018
- CVE-2015-200440Planlayın
The GraceNote GNSDK SDK before SVN Changeset 1.1.7 for Android might allow attackers to execute arbitrary code by leveraging a finalize meth
KritikCVSS 9,8İstismar yokEPSS %2gracenote · gnsdk29 Mar 2018
- CVE-2015-200140Planlayın
The MetaIO SDK before 6.0.2.1 for Android might allow attackers to execute arbitrary code by leveraging a finalize method in a Serializable
KritikCVSS 9,8İstismar yokEPSS %2metaio · metaio sdk29 Mar 2018
- CVE-2016-1049539İzleyin
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9635M, made changes to map the scan type value
KritikCVSS 9,8İstismar yokEPSS %1qualcomm · mdm9635m firmware18 Nis 2018
- CVE-2015-914239İzleyin
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9645, MDM9650, SD 210/SD 212/SD 205, SD 400, S
KritikCVSS 9,8İstismar yokEPSS %1qualcomm · mdm9645 firmware18 Nis 2018
- CVE-2014-941139İzleyin
In all Qualcomm products with Android releases from CAF using the Linux kernel, the use of an out-of-range pointer offset is potentially pos
KritikCVSS 9,8İstismar yokEPSS %1google · android18 Ağu 2017
- CVE-2022-3807235İzleyin
An improper array index validation vulnerability exists in the stl_fix_normal_directions functionality of ADMesh Master Commit 767a105 and v
YüksekCVSS 8,8İstismar yokEPSS %1admesh project · admesh3 Nis 2023
- CVE-2017-588432İzleyin
gtk-vnc before 0.7.0 does not properly check boundaries of subrectangle-containing tiles, which allows remote servers to execute arbitrary c
YüksekCVSS 7,8İstismar yokEPSS %2fedoraproject · fedora28 Şub 2017
- CVE-2023-3792231İzleyin
Multiple arbitrary write vulnerabilities exist in the VCD sorted bsearch functionality of GTKWave 3.3.115.
YüksekCVSS 7,8İstismar yokEPSS %0tonybybell · gtkwave8 Oca 2024
- CVE-2023-3792331İzleyin
Multiple arbitrary write vulnerabilities exist in the VCD sorted bsearch functionality of GTKWave 3.3.115.
YüksekCVSS 7,8İstismar yokEPSS %0tonybybell · gtkwave8 Oca 2024
- CVE-2023-3792131İzleyin
Multiple arbitrary write vulnerabilities exist in the VCD sorted bsearch functionality of GTKWave 3.3.115.
YüksekCVSS 7,8İstismar yokEPSS %0tonybybell · gtkwave8 Oca 2024
- CVE-2026-5036731İzleyin
Windows Sensor Data Service Elevation of Privilege Vulnerability
YüksekCVSS 7,8İstismar yokEPSS %0microsoft · windows 10 180914 Tem 2026
- CVE-2020-323530İzleyin
Cisco IOS and IOS XE Software Simple Network Management Protocol Denial of Service Vulnerability
YüksekCVSS 7,7İstismar yokEPSS %2cisco · ios3 Haz 2020
- CVE-2020-336930İzleyin
Cisco SD-WAN vEdge Routers Denial of Service Vulnerability
YüksekCVSS 7,5İstismar yokEPSS %1cisco · sd-wan firmware16 Tem 2020
- CVE-2025-5462830İzleyin
Vulnerability of incomplete verification information in the communication module.
YüksekCVSS 7,5İstismar yokEPSS %0huawei · emui5 Ağu 2025
- CVE-2017-1087227İzleyin
H2O version 2.2.3 and earlier allows remote attackers to cause a denial of service in the server via unspecified vectors.
OrtaCVSS 6,5İstismar yokEPSS %2dena · h2o22 Ara 2017
- CVE-2024-4352427İzleyin
Windows Mobile Broadband Driver Remote Code Execution Vulnerability
OrtaCVSS 6,8İstismar yokEPSS %1microsoft · windows 10 18098 Eki 2024
- CVE-2023-020126İzleyin
NVIDIA DGX-2 SBIOS contains a vulnerability in Bds, where a user with high privileges can cause a write beyond the bounds of an indexable re
OrtaCVSS 6,7İstismar yokEPSS %0nvidia · bmc21 Nis 2023
- CVE-2025-4890226İzleyin
Vulnerability of uncontrolled system resource applications in the setting module Impact: Successful exploitation of this vulnerability may a
OrtaCVSS 6,6İstismar yokEPSS %0huawei · emui6 Haz 2025
- CVE-2019-613022İzleyin
Artifex MuPDF 1.14.0 has a SEGV in the function fz_load_page of the fitz/document.c file, as demonstrated by mutool.
OrtaCVSS 5,5İstismar yokEPSS %2artifex · mupdf11 Oca 2019
- CVE-2022-3640222İzleyin
There is an int overflow vulnerability in vmwgfx driver
OrtaCVSS 5,5İstismar yokEPSS %1linux · linux kernel16 Eyl 2022
- CVE-2017-030221İzleyin
In F5 BIG-IP APM 12.0.0 through 12.1.2 and 13.0.0, an authenticated user with an established access session to the BIG-IP APM system may be
OrtaCVSS 5,3İstismar yokEPSS %1f5 · big-ip access policy manager9 May 2017