İçeriğe atla
Noroxi

CWE-159 · 11 kayıt

Improper Handling of Invalid Use of Special Elements

Bu sınıftaki CVE’ler

11 kayıt

  • CVE-2019-9505
    40Planlayın

    PrinterLogic Print Management Software does not sanitize special characters

    KritikCVSS 9,8İstismar yokEPSS %3

    printerlogic · print management8 May 2019

  • CVE-2020-1653
    30İzleyin

    Junos OS: Kernel crash (vmcore) or FPC crash due to mbuf leak

    YüksekCVSS 7,5İstismar yokEPSS %2

    juniper · junos17 Tem 2020

  • CVE-2020-1648
    30İzleyin

    Junos OS and Junos OS Evolved: RPD crash when processing a specific BGP packet

    YüksekCVSS 7,5İstismar yokEPSS %1

    juniper · junos17 Tem 2020

  • CVE-2020-1646
    30İzleyin

    Junos OS and Junos OS Evolved: RPD crash while processing a specific BGP update information.

    YüksekCVSS 7,5İstismar yokEPSS %1

    juniper · junos17 Tem 2020

  • CVE-2021-21707
    29İzleyin

    Special characters break path parsing in XML functions

    OrtaCVSS 5,3Kavram kanıtıEPSS %26

    php · php29 Kas 2021

  • CVE-2026-2636
    22İzleyin

    Denial of Service in Microsoft OS

    OrtaCVSS 5,5Kavram kanıtıEPSS %0

    microsoft · windows os25 Şub 2026

  • CVE-2021-42375
    22İzleyin

    An incorrect handling of a special element in Busybox's ash applet leads to denial of service when processing a crafted shell command, due t

    OrtaCVSS 5,5İstismar yokEPSS %0

    busybox · busybox15 Kas 2021

  • CVE-2020-29022
    21İzleyin

    Host Header Injection allowing web cache poisoning attacks

    OrtaCVSS 5,3İstismar yokEPSS %1

    secomea · gatemanager 4250 firmware16 Şub 2021

  • CVE-2026-35536
    21İzleyin

    In Tornado before 6.5.5, cookie attribute injection could occur because the domain, path, and samesite arguments to .RequestHandler.set_cook

    OrtaCVSS 5,3İstismar yokEPSS %0

    tornadoweb · tornado3 Nis 2026

  • CVE-2025-61984
    14İzleyin

    ssh in OpenSSH before 10.1 allows control characters in usernames that originate from certain possibly untrusted sources, potentially leadin

    DüşükCVSS 3,6Kavram kanıtıEPSS %0

    openbsd · openssh6 Eki 2025

  • risc0-ethereum-contracts allows invalid commitment with digest value of zero to be accepted by Steel.validateCommitment

    DüşükCVSS 1,7İstismar yokEPSS %0

    risc0 · risc0-ethereum24 Haz 2025

Tüm zafiyet sınıfları