İçeriğe atla
Noroxi

CWE-118 · 24 kayıt

Incorrect Access of Indexable Resource ('Range Error')

Bu sınıftaki CVE’ler

24 kayıt

  • CVE-2015-2002
    40Planlayın

    The ESRI ArcGis Runtime SDK before 10.2.6-2 for Android might allow attackers to execute arbitrary code by leveraging a finalize method in a

    KritikCVSS 9,8İstismar yokEPSS %2

    esri · arcgisruntime sdk29 Mar 2018

  • CVE-2015-2000
    40Planlayın

    The Jumio SDK before 1.5.0 for Android might allow attackers to execute arbitrary code by leveraging a finalize method in a Serializable cla

    KritikCVSS 9,8İstismar yokEPSS %2

    jumio · jumio sdk29 Mar 2018

  • CVE-2015-2003
    40Planlayın

    The PJSIP PJSUA2 SDK before SVN Changeset 51322 for Android might allow attackers to execute arbitrary code by leveraging a finalize method

    KritikCVSS 9,8İstismar yokEPSS %2

    pjsip · pjsua2 sdk29 Mar 2018

  • CVE-2015-2004
    40Planlayın

    The GraceNote GNSDK SDK before SVN Changeset 1.1.7 for Android might allow attackers to execute arbitrary code by leveraging a finalize meth

    KritikCVSS 9,8İstismar yokEPSS %2

    gracenote · gnsdk29 Mar 2018

  • CVE-2015-2001
    40Planlayın

    The MetaIO SDK before 6.0.2.1 for Android might allow attackers to execute arbitrary code by leveraging a finalize method in a Serializable

    KritikCVSS 9,8İstismar yokEPSS %2

    metaio · metaio sdk29 Mar 2018

  • CVE-2016-10495
    39İzleyin

    In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9635M, made changes to map the scan type value

    KritikCVSS 9,8İstismar yokEPSS %1

    qualcomm · mdm9635m firmware18 Nis 2018

  • CVE-2015-9142
    39İzleyin

    In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9645, MDM9650, SD 210/SD 212/SD 205, SD 400, S

    KritikCVSS 9,8İstismar yokEPSS %1

    qualcomm · mdm9645 firmware18 Nis 2018

  • CVE-2014-9411
    39İzleyin

    In all Qualcomm products with Android releases from CAF using the Linux kernel, the use of an out-of-range pointer offset is potentially pos

    KritikCVSS 9,8İstismar yokEPSS %1

    google · android18 Ağu 2017

  • CVE-2022-38072
    35İzleyin

    An improper array index validation vulnerability exists in the stl_fix_normal_directions functionality of ADMesh Master Commit 767a105 and v

    YüksekCVSS 8,8İstismar yokEPSS %1

    admesh project · admesh3 Nis 2023

  • CVE-2017-5884
    32İzleyin

    gtk-vnc before 0.7.0 does not properly check boundaries of subrectangle-containing tiles, which allows remote servers to execute arbitrary c

    YüksekCVSS 7,8İstismar yokEPSS %2

    fedoraproject · fedora28 Şub 2017

  • CVE-2023-37922
    31İzleyin

    Multiple arbitrary write vulnerabilities exist in the VCD sorted bsearch functionality of GTKWave 3.3.115.

    YüksekCVSS 7,8İstismar yokEPSS %0

    tonybybell · gtkwave8 Oca 2024

  • CVE-2023-37923
    31İzleyin

    Multiple arbitrary write vulnerabilities exist in the VCD sorted bsearch functionality of GTKWave 3.3.115.

    YüksekCVSS 7,8İstismar yokEPSS %0

    tonybybell · gtkwave8 Oca 2024

  • CVE-2023-37921
    31İzleyin

    Multiple arbitrary write vulnerabilities exist in the VCD sorted bsearch functionality of GTKWave 3.3.115.

    YüksekCVSS 7,8İstismar yokEPSS %0

    tonybybell · gtkwave8 Oca 2024

  • CVE-2026-50367
    31İzleyin

    Windows Sensor Data Service Elevation of Privilege Vulnerability

    YüksekCVSS 7,8İstismar yokEPSS %0

    microsoft · windows 10 180914 Tem 2026

  • CVE-2020-3235
    30İzleyin

    Cisco IOS and IOS XE Software Simple Network Management Protocol Denial of Service Vulnerability

    YüksekCVSS 7,7İstismar yokEPSS %2

    cisco · ios3 Haz 2020

  • CVE-2020-3369
    30İzleyin

    Cisco SD-WAN vEdge Routers Denial of Service Vulnerability

    YüksekCVSS 7,5İstismar yokEPSS %1

    cisco · sd-wan firmware16 Tem 2020

  • CVE-2025-54628
    30İzleyin

    Vulnerability of incomplete verification information in the communication module.

    YüksekCVSS 7,5İstismar yokEPSS %0

    huawei · emui5 Ağu 2025

  • CVE-2017-10872
    27İzleyin

    H2O version 2.2.3 and earlier allows remote attackers to cause a denial of service in the server via unspecified vectors.

    OrtaCVSS 6,5İstismar yokEPSS %2

    dena · h2o22 Ara 2017

  • CVE-2024-43524
    27İzleyin

    Windows Mobile Broadband Driver Remote Code Execution Vulnerability

    OrtaCVSS 6,8İstismar yokEPSS %1

    microsoft · windows 10 18098 Eki 2024

  • CVE-2023-0201
    26İzleyin

    NVIDIA DGX-2 SBIOS contains a vulnerability in Bds, where a user with high privileges can cause a write beyond the bounds of an indexable re

    OrtaCVSS 6,7İstismar yokEPSS %0

    nvidia · bmc21 Nis 2023

  • CVE-2025-48902
    26İzleyin

    Vulnerability of uncontrolled system resource applications in the setting module Impact: Successful exploitation of this vulnerability may a

    OrtaCVSS 6,6İstismar yokEPSS %0

    huawei · emui6 Haz 2025

  • CVE-2019-6130
    22İzleyin

    Artifex MuPDF 1.14.0 has a SEGV in the function fz_load_page of the fitz/document.c file, as demonstrated by mutool.

    OrtaCVSS 5,5İstismar yokEPSS %2

    artifex · mupdf11 Oca 2019

  • CVE-2022-36402
    22İzleyin

    There is an int overflow vulnerability in vmwgfx driver

    OrtaCVSS 5,5İstismar yokEPSS %1

    linux · linux kernel16 Eyl 2022

  • CVE-2017-0302
    21İzleyin

    In F5 BIG-IP APM 12.0.0 through 12.1.2 and 13.0.0, an authenticated user with an established access session to the BIG-IP APM system may be

    OrtaCVSS 5,3İstismar yokEPSS %1

    f5 · big-ip access policy manager9 May 2017

Tüm zafiyet sınıfları