İçeriğe atla
Noroxi

CWE-19 · 232 kayıt

Data Processing Errors

Bu sınıftaki CVE’ler

232 kayıt

  • CVE-2016-3236
    62Bu hafta

    The Web Proxy Auto Discovery (WPAD) protocol implementation in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP

    KritikCVSS 9,8SilahlaştırılmışEPSS %77

    microsoft · windows 1015 Haz 2016

  • CVE-2016-4977
    59Planlayın

    When processing authorization requests using the whitelabel views in Spring Security OAuth 2.0.0 to 2.0.9 and 1.0.0 to 1.0.5, the response_t

    YüksekCVSS 8,8Kavram kanıtıEPSS %79

    pivotal · spring security oauth25 May 2017

  • CVE-2012-5357
    59Planlayın

    Ektron Content Management System (CMS) before 8.02 SP5 uses the XslCompiledTransform class with enablescript set to true, which allows remot

    KritikCVSS 9,8SilahlaştırılmışEPSS %68

    ektron · ektron content management system30 Eki 2017

  • CVE-2015-5477
    58Planlayın

    named in ISC BIND 9.x before 9.9.7-P2 and 9.10.x before 9.10.2-P3 allows remote attackers to cause a denial of service (REQUIRE assertion fa

    YüksekCVSS 7,8SilahlaştırılmışEPSS %91

    isc · bind29 Tem 2015

  • CVE-2015-5374
    53Planlayın

    A vulnerability has been identified in Firmware variant PROFINET IO for EN100 Ethernet module : All versions < V1.04.01; Firmware variant Mo

    YüksekCVSS 7,8SilahlaştırılmışEPSS %74

    siemens · siprotec firmware18 Tem 2015

  • CVE-2016-2510
    53Planlayın

    BeanShell (bsh) before 2.0b6, when included on the classpath by an application that uses Java serialization or XStream, allows remote attack

    YüksekCVSS 8,1İstismar yokEPSS %70

    beanshell · beanshell7 Nis 2016

  • CVE-2015-2373
    51Planlayın

    The Remote Desktop Protocol (RDP) server service in Microsoft Windows 7 SP1, Windows 8, and Windows Server 2012 allows remote attackers to e

    KritikCVSS 10,0İstismar yokEPSS %38

    microsoft · windows 714 Tem 2015

  • CVE-2015-0097
    49Planlayın

    Microsoft Excel 2007 SP3, PowerPoint 2007 SP3, Word 2007 SP3, Excel 2010 SP2, PowerPoint 2010 SP2, and Word 2010 SP2 allow remote attackers

    KritikCVSS 9,3Kavram kanıtıEPSS %41

    microsoft · excel11 Mar 2015

  • CVE-2014-7141
    48Planlayın

    The pinger in Squid 3.x before 3.4.8 allows remote attackers to obtain sensitive information or cause a denial of service (out-of-bounds rea

    OrtaCVSS 6,4İstismar yokEPSS %76

    squid-cache · squid26 Kas 2014

  • CVE-2016-7274
    48Planlayın

    Uniscribe in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, W

    YüksekCVSS 8,8Kavram kanıtıEPSS %42

    microsoft · windows 1020 Ara 2016

  • CVE-2016-7272
    47Planlayın

    The Graphics component in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 G

    YüksekCVSS 8,8İstismar yokEPSS %39

    microsoft · windows 1020 Ara 2016

  • CVE-2015-2432
    46Planlayın

    ATMFD.DLL in the Windows Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windo

    KritikCVSS 9,3Kavram kanıtıEPSS %30

    microsoft · windows 714 Ağu 2015

  • CVE-2016-7117
    46Planlayın

    Use-after-free vulnerability in the __sys_recvmmsg function in net/socket.c in the Linux kernel before 4.5.2 allows remote attackers to exec

    KritikCVSS 9,8İstismar yokEPSS %24

    linux · linux kernel10 Eki 2016

  • CVE-2014-9034
    45Planlayın

    wp-includes/class-phpass.php in WordPress before 3.7.5, 3.8.x before 3.8.5, 3.9.x before 3.9.3, and 4.x before 4.0.1 allows remote attackers

    OrtaCVSS 5,0Kavram kanıtıEPSS %83

    wordpress · wordpress25 Kas 2014

  • CVE-2017-6920
    45Planlayın

    Drupal core 8 before versions 8.3.4 allows remote attackers to execute arbitrary code due to the PECL YAML parser not handling PHP objects s

    KritikCVSS 9,8İstismar yokEPSS %20

    drupal · drupal6 Ağu 2018

  • CVE-2015-0081
    44Planlayın

    Windows Text Services (WTS) in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Wind

    KritikCVSS 9,3Kavram kanıtıEPSS %24

    microsoft · windows 711 Mar 2015

  • CVE-2015-5621
    42Planlayın

    The snmp_pdu_parse function in snmp_api.c in net-snmp 5.7.2 and earlier does not remove the varBind variable in a netsnmp_variable_list item

    YüksekCVSS 7,5Kavram kanıtıEPSS %41

    net-snmp · net-snmp19 Ağu 2015

  • CVE-2015-1759
    42Planlayın

    Microsoft Office Compatibility Pack SP3 allows remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Offi

    KritikCVSS 9,3İstismar yokEPSS %16

    microsoft · office compatibility pack9 Haz 2015

  • CVE-2015-1760
    42Planlayın

    Microsoft Office Compatibility Pack SP3, Office 2010 SP2, Office 2013 SP1, and Office 2013 RT SP1 allow remote attackers to execute arbitrar

    KritikCVSS 9,3İstismar yokEPSS %16

    microsoft · office9 Haz 2015

  • CVE-2019-13917
    42Planlayın

    Exim 4.85 through 4.92 (fixed in 4.92.1) allows remote code execution as root in some unusual configurations that use the ${sort } expansion

    KritikCVSS 9,8İstismar yokEPSS %9

    exim · exim25 Tem 2019

  • CVE-1999-0226
    42Planlayın

    Windows NT TCP/IP processes fragmented IP packets improperly, causing a denial of service.

    KritikCVSS 10,0İstismar yokEPSS %6

    microsoft · windows nt1 Oca 1999

  • CVE-2014-7247
    42Planlayın

    Unspecified vulnerability in JustSystems Ichitaro 2008 through 2011; Ichitaro Government 6, 7, 2008, 2009, and 2010; Ichitaro Pro; Ichitaro

    KritikCVSS 10,0İstismar yokEPSS %5

    justsystems · ichitaro25 Kas 2014

  • CVE-2016-7273
    41Planlayın

    The Graphics component in Microsoft Windows 10 Gold, 1511, and 1607 and Windows Server 2016 allows remote attackers to execute arbitrary cod

    YüksekCVSS 8,8İstismar yokEPSS %19

    microsoft · windows 1020 Ara 2016

  • CVE-2015-1687
    41Planlayın

    Microsoft Internet Explorer 6 through 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) v

    KritikCVSS 9,3İstismar yokEPSS %13

    microsoft · internet explorer9 Haz 2015

  • CVE-2015-5344
    41Planlayın

    The camel-xstream component in Apache Camel before 2.15.5 and 2.16.x before 2.16.1 allow remote attackers to execute arbitrary commands via

    KritikCVSS 9,8İstismar yokEPSS %7

    apache · camel3 Şub 2016

Tüm zafiyet sınıfları