İçeriğe atla
Noroxi

CWE-228 · 24 kayıt

Improper Handling of Syntactically Invalid Structure

Bu sınıftaki CVE’ler

24 kayıt

  • CVE-2021-38443
    40Planlayın

    Eclipse CycloneDDS Improper Handling of Syntactically Invalid Structure

    KritikCVSS 9,8İstismar yokEPSS %2

    eclipse · cyclonedds5 May 2022

  • CVE-2020-27847
    40Planlayın

    A vulnerability exists in the SAML connector of the github.com/dexidp/dex library used to process SAML Signature Validation.

    KritikCVSS 9,8İstismar yokEPSS %2

    linuxfoundation · dex28 May 2021

  • CVE-2026-87986
    40Planlayın

    An arbitrary code execution vulnerability in Mistral Vibe allows an attacker to bypass command permission checks using shell constructs it's

    KritikCVSS 10,0İstismar yokEPSS %1

    mistralai · mistral-vibe11 Eyl 2026

  • CVE-2018-5381
    39İzleyin

    The Quagga BGP daemon (bgpd) prior to version 1.2.3 has a bug in its parsing of "Capabilities" in BGP OPEN messages, in the bgp_packet.c:bgp

    YüksekCVSS 7,5İstismar yokEPSS %30

    quagga · quagga19 Şub 2018

  • CVE-2024-55594
    39İzleyin

    An improper handling of syntactically invalid structure in Fortinet FortiWeb at least vesrions 7.4.0 through 7.4.6 and 7.2.0 through 7.2.10

    KritikCVSS 9,8İstismar yokEPSS %1

    fortinet · fortiweb14 Mar 2025

  • CVE-2023-42784
    39İzleyin

    An improper handling of syntactically invalid structure in Fortinet FortiWeb at least verions 7.4.0 through 7.4.6 and 7.2.0 through 7.2.10 a

    KritikCVSS 9,8İstismar yokEPSS %0

    fortinet · fortiweb11 Mar 2025

  • CometBFT's invalid BitArray handling can lead to network halt

    YüksekCVSS 8,0İstismar yok

    Go · github.com/cometbft/cometbft14 Eki 2025

  • CVE-2026-34232
    30İzleyin

    Firebird: DoS via `op_response` packet from client

    YüksekCVSS 7,5İstismar yokEPSS %1

    firebirdsql · firebird17 Nis 2026

  • CVE-2025-22865
    30İzleyin

    ParsePKCS1PrivateKey panic with partial keys in crypto/x509

    YüksekCVSS 7,5İstismar yokEPSS %1

    go standard library · crypto/x50927 Oca 2025

  • CVE-2024-21612
    30İzleyin

    Junos OS Evolved: Specific TCP traffic causes OFP core and restart of RE

    YüksekCVSS 7,5İstismar yokEPSS %1

    juniper · junos os evolved11 Oca 2024

  • CVE-2025-0343
    30İzleyin

    Swift ASN.1 can be caused to crash when parsing certain BER/DER constructions.

    YüksekCVSS 7,5İstismar yokEPSS %0

    swift project · swift asn114 Oca 2025

  • CVE-2026-20125
    30İzleyin

    A vulnerability in the HTTP Server feature of Cisco IOS Software and Cisco IOS XE Software Release 3E could allow an authenticated, remote a

    YüksekCVSS 7,7İstismar yokEPSS %0

    cisco · ios25 Mar 2026

  • CVE-2024-6382
    30İzleyin

    Adversarial unsanitized input may cause MongoDB Rust Driver to issue unintended commands.

    YüksekCVSS 7,5İstismar yokEPSS %0

    mongodb · rust driver2 Tem 2024

  • CVE-2026-42100
    28İzleyin

    DoS in Sparx Pro Cloud Server

    YüksekCVSS 7,1İstismar yokEPSS %1

    sparxsystems · pro cloud server19 May 2026

  • CVE-2026-25657
    28İzleyin

    Ericsson Packet Core Gateway (PCG) - Improper Handling of Syntactically Invalid Structure Vulnerability

    YüksekCVSS 7,1İstismar yokEPSS %0

    ericsson · packet core gateway5 Haz 2026

  • CVE-2026-50103
    28İzleyin

    Improper Handling of Syntactically Invalid Structure in MZ Automation libIEC61850

    YüksekCVSS 7,1İstismar yokEPSS %0

    mz automation · libiec6185023 Tem 2026

  • CVE-2025-59174
    28İzleyin

    Ericsson Packet Core Controller (PCC) versions prior to 1.39 contain a vulnerability where an attacker sending a large volume of specially c

    YüksekCVSS 7,1İstismar yokEPSS %0

    ericsson · packet core controller5 Haz 2026

  • CVE-2024-22809
    26İzleyin

    Incorrect access control in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to access the G code's shared folder and

    OrtaCVSS 6,5İstismar yokEPSS %0

    tormach · pathpilot controller22 Nis 2024

  • CVE-2026-107299
    23İzleyin

    msgpack5: Reserved byte can cause unbounded stream buffering

    OrtaCVSS 5,9İstismar yok

    mcollina · msgpack51 gün önce

  • CVE-2021-36199
    21İzleyin

    Running a vulnerability scanner against VideoEdge NVRs can cause some functionality to stop.

    OrtaCVSS 5,3İstismar yokEPSS %1

    johnsoncontrols · videoedge14 Oca 2022

  • CVE-2024-53828
    21İzleyin

    Ericsson Packet Core Controller (PCC) - Improper Handling of Syntactically Invalid Structure Vulnerability

    OrtaCVSS 5,3İstismar yokEPSS %0

    ericsson · packet core controller1 Nis 2026

  • CVE-2024-22815
    21İzleyin

    An issue in the communication protocol of Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to cause a Denial of Servi

    OrtaCVSS 5,3İstismar yokEPSS %0

    tormach · pathpilot controller22 Nis 2024

  • CVE-2025-2529
    14İzleyin

    IBM Terracotta denial of service

    DüşükCVSS 3,7İstismar yokEPSS %0

    ibm · terracotta15 Eki 2025

  • CVE-2025-47736
    11İzleyin

    dialect/mod.rs in the libsql-sqlite3-parser crate through 0.13.0 before 14f422a for Rust can crash if the input is not valid UTF-8.

    DüşükCVSS 2,9İstismar yokEPSS %0

    gwenn · libsql-sqlite3-parser9 May 2025

Tüm zafiyet sınıfları