CWE-391 · 26 kayıt
Unchecked Error Condition
Bu sınıftaki CVE’ler
26 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
41Planlayın | CVE-2024-52316Kavram kanıtı | Apache Tomcat: Authentication bypass when using Jakarta Authentication APIapache · tomcat · CWE-391 | Kritik9,8 | — | %6,2 | 18 Kas 2024 |
40Planlayın | CVE-2017-12179İstismar yok | xorg-x11-server before 1.19.5 was vulnerable to integer overflow in (S)ProcXIBarrierReleasePointer functions allowing malicious X client to debian · debian linux · CWE-391 | Kritik9,8 | — | %4,4 | 24 Oca 2018 |
40Planlayın | CVE-2017-12177İstismar yok | xorg-x11-server before 1.19.5 was vulnerable to integer overflow in ProcDbeGetVisualInfo function allowing malicious X client to cause X serdebian · debian linux · CWE-391 | Kritik9,8 | — | %4,4 | 24 Oca 2018 |
40Planlayın | CVE-2017-12186İstismar yok | xorg-x11-server before 1.19.5 was missing length validation in X-Resource extension allowing malicious X client to cause X server to crash odebian · debian linux · CWE-391 | Kritik9,8 | — | %4,3 | 24 Oca 2018 |
40Planlayın | CVE-2017-12180İstismar yok | xorg-x11-server before 1.19.5 was missing length validation in XFree86 VidModeExtension allowing malicious X client to cause X server to cradebian · debian linux · CWE-391 | Kritik9,8 | — | %4,2 | 24 Oca 2018 |
40Planlayın | CVE-2017-12181İstismar yok | xorg-x11-server before 1.19.5 was missing length validation in XFree86 DGA extension allowing malicious X client to cause X server to crash debian · debian linux · CWE-391 | Kritik9,8 | — | %4,2 | 24 Oca 2018 |
40Planlayın | CVE-2017-12183İstismar yok | xorg-x11-server before 1.19.5 was missing length validation in XFIXES extension allowing malicious X client to cause X server to crash or podebian · debian linux · CWE-391 | Kritik9,8 | — | %4,2 | 24 Oca 2018 |
40Planlayın | CVE-2017-12182İstismar yok | xorg-x11-server before 1.19.5 was missing length validation in XFree86 DRI extension allowing malicious X client to cause X server to crash debian · debian linux · CWE-391 | Kritik9,8 | — | %4,2 | 24 Oca 2018 |
40Planlayın | CVE-2017-12184İstismar yok | xorg-x11-server before 1.19.5 was missing length validation in XINERAMA extension allowing malicious X client to cause X server to crash or debian · debian linux · CWE-391 | Kritik9,8 | — | %4,2 | 24 Oca 2018 |
40Planlayın | CVE-2017-12185İstismar yok | xorg-x11-server before 1.19.5 was missing length validation in MIT-SCREEN-SAVER extension allowing malicious X client to cause X server to cdebian · debian linux · CWE-391 | Kritik9,8 | — | %4,2 | 24 Oca 2018 |
40Planlayın | CVE-2017-12178İstismar yok | xorg-x11-server before 1.19.5 had wrong extra length check in ProcXIChangeHierarchy function allowing malicious X client to cause X server tdebian · debian linux · CWE-391 | Kritik9,8 | — | %4,2 | 24 Oca 2018 |
40Planlayın | CVE-2017-12176İstismar yok | xorg-x11-server before 1.19.5 was missing extra length validation in ProcEstablishConnection function allowing malicious X client to cause Xdebian · debian linux · CWE-391 | Kritik9,8 | — | %4,2 | 24 Oca 2018 |
40Planlayın | CVE-2017-12187İstismar yok | xorg-x11-server before 1.19.5 was missing length validation in RENDER extension allowing malicious X client to cause X server to crash or podebian · debian linux · CWE-391 | Kritik9,8 | — | %3,3 | 24 Oca 2018 |
39İzleyin | GHSA-5rph-q42j-36j9İstismar yok | Duplicate Advisory: Picklescan has pickle parsing logic flaw that leads to malicious pickle file bypassPyPI · picklescan · CWE-391 | Kritik9,8 | — | — | 17 Haz 2026 |
37İzleyin | CVE-2026-74900İstismar yok | openssl_encrypt before 1.4.0 Weak Shared Secret via PQC Simulation Modejahlives · openssl encrypt · CWE-391 | Kritik9,3 | — | %0,6 | 17 Ağu 2026 |
37İzleyin | CVE-2025-71325İstismar yok | picklescan - Detection Bypass via STACK_GLOBAL Opcode Parsing Logic Flawpicklescan · picklescan · CWE-391 | Kritik9,3 | — | %0,5 | 17 Haz 2026 |
34İzleyin | CVE-2016-10526İstismar yok | A common setup to deploy to gh-pages on every commit via a CI system is to expose a github token to ENV and to use it directly in the auth pgrunt-gh-pages project · grunt-gh-pages · CWE-391 | Yüksek8,6 | — | %1,6 | 31 May 2018 |
32İzleyin | CVE-2024-23326İstismar yok | Envoy incorrectly accepts HTTP 200 response for entering upgrade modeenvoyproxy · envoy · CWE-391 | Yüksek8,2 | — | %0,4 | 4 Haz 2024 |
31İzleyin | CVE-2019-14853İstismar yok | An error-handling flaw was found in python-ecdsa before version 0.13.3.python-ecdsa project · python-ecdsa · CWE-391 | Yüksek7,5 | — | %2,4 | 26 Kas 2019 |
28İzleyin | CVE-2017-7496İstismar yok | fedora-arm-installer up to and including 1.99.16 is vulnerable to local privilege escalation due to lack of checking the error condition of fedoraproject · arm installer · CWE-391 | Yüksek7,0 | — | %0,3 | 26 Haz 2017 |
27İzleyin | CVE-2020-14383İstismar yok | A flaw was found in samba's DNS server.samba · samba · CWE-391 | Orta6,5 | — | %2,2 | 1 Ara 2020 |
26İzleyin | CVE-2022-22160İstismar yok | Junos OS: MX Series: The bbe-smgd process crashes if an unsupported configuration exists and a PPPoE client sends a specific messagejuniper · junos · CWE-391 | Orta6,5 | — | %0,4 | 18 Oca 2022 |
24İzleyin | CVE-2022-20849İstismar yok | Cisco IOS XR Software Broadband Network Gateway PPPoE Denial of Service Vulnerabilitycisco · ios xr · CWE-391 | Orta6,1 | — | %0,3 | 15 Kas 2024 |
22İzleyin | CVE-2018-1091İstismar yok | In the flush_tmregs_to_thread function in arch/powerpc/kernel/ptrace.c in the Linux kernel before 4.13.5, a guest kernel crash can be triggelinux · linux kernel · CWE-391 | Orta5,5 | — | %0,4 | 27 Mar 2018 |
21İzleyin | CVE-2023-0572İstismar yok | Unchecked Error Condition in froxlor/froxlorfroxlor · froxlor · CWE-391 | Orta5,3 | — | %0,7 | 29 Oca 2023 |
- CVE-2024-5231641Planlayın
Apache Tomcat: Authentication bypass when using Jakarta Authentication API
KritikCVSS 9,8Kavram kanıtıEPSS %6apache · tomcat18 Kas 2024
- CVE-2017-1217940Planlayın
xorg-x11-server before 1.19.5 was vulnerable to integer overflow in (S)ProcXIBarrierReleasePointer functions allowing malicious X client to
KritikCVSS 9,8İstismar yokEPSS %4debian · debian linux24 Oca 2018
- CVE-2017-1217740Planlayın
xorg-x11-server before 1.19.5 was vulnerable to integer overflow in ProcDbeGetVisualInfo function allowing malicious X client to cause X ser
KritikCVSS 9,8İstismar yokEPSS %4debian · debian linux24 Oca 2018
- CVE-2017-1218640Planlayın
xorg-x11-server before 1.19.5 was missing length validation in X-Resource extension allowing malicious X client to cause X server to crash o
KritikCVSS 9,8İstismar yokEPSS %4debian · debian linux24 Oca 2018
- CVE-2017-1218040Planlayın
xorg-x11-server before 1.19.5 was missing length validation in XFree86 VidModeExtension allowing malicious X client to cause X server to cra
KritikCVSS 9,8İstismar yokEPSS %4debian · debian linux24 Oca 2018
- CVE-2017-1218140Planlayın
xorg-x11-server before 1.19.5 was missing length validation in XFree86 DGA extension allowing malicious X client to cause X server to crash
KritikCVSS 9,8İstismar yokEPSS %4debian · debian linux24 Oca 2018
- CVE-2017-1218340Planlayın
xorg-x11-server before 1.19.5 was missing length validation in XFIXES extension allowing malicious X client to cause X server to crash or po
KritikCVSS 9,8İstismar yokEPSS %4debian · debian linux24 Oca 2018
- CVE-2017-1218240Planlayın
xorg-x11-server before 1.19.5 was missing length validation in XFree86 DRI extension allowing malicious X client to cause X server to crash
KritikCVSS 9,8İstismar yokEPSS %4debian · debian linux24 Oca 2018
- CVE-2017-1218440Planlayın
xorg-x11-server before 1.19.5 was missing length validation in XINERAMA extension allowing malicious X client to cause X server to crash or
KritikCVSS 9,8İstismar yokEPSS %4debian · debian linux24 Oca 2018
- CVE-2017-1218540Planlayın
xorg-x11-server before 1.19.5 was missing length validation in MIT-SCREEN-SAVER extension allowing malicious X client to cause X server to c
KritikCVSS 9,8İstismar yokEPSS %4debian · debian linux24 Oca 2018
- CVE-2017-1217840Planlayın
xorg-x11-server before 1.19.5 had wrong extra length check in ProcXIChangeHierarchy function allowing malicious X client to cause X server t
KritikCVSS 9,8İstismar yokEPSS %4debian · debian linux24 Oca 2018
- CVE-2017-1217640Planlayın
xorg-x11-server before 1.19.5 was missing extra length validation in ProcEstablishConnection function allowing malicious X client to cause X
KritikCVSS 9,8İstismar yokEPSS %4debian · debian linux24 Oca 2018
- CVE-2017-1218740Planlayın
xorg-x11-server before 1.19.5 was missing length validation in RENDER extension allowing malicious X client to cause X server to crash or po
KritikCVSS 9,8İstismar yokEPSS %3debian · debian linux24 Oca 2018
- GHSA-5rph-q42j-36j939İzleyin
Duplicate Advisory: Picklescan has pickle parsing logic flaw that leads to malicious pickle file bypass
KritikCVSS 9,8İstismar yokPyPI · picklescan17 Haz 2026
- CVE-2026-7490037İzleyin
openssl_encrypt before 1.4.0 Weak Shared Secret via PQC Simulation Mode
KritikCVSS 9,3İstismar yokEPSS %1jahlives · openssl encrypt17 Ağu 2026
- CVE-2025-7132537İzleyin
picklescan - Detection Bypass via STACK_GLOBAL Opcode Parsing Logic Flaw
KritikCVSS 9,3İstismar yokEPSS %0picklescan · picklescan17 Haz 2026
- CVE-2016-1052634İzleyin
A common setup to deploy to gh-pages on every commit via a CI system is to expose a github token to ENV and to use it directly in the auth p
YüksekCVSS 8,6İstismar yokEPSS %2grunt-gh-pages project · grunt-gh-pages31 May 2018
- CVE-2024-2332632İzleyin
Envoy incorrectly accepts HTTP 200 response for entering upgrade mode
YüksekCVSS 8,2İstismar yokEPSS %0envoyproxy · envoy4 Haz 2024
- CVE-2019-1485331İzleyin
An error-handling flaw was found in python-ecdsa before version 0.13.3.
YüksekCVSS 7,5İstismar yokEPSS %2python-ecdsa project · python-ecdsa26 Kas 2019
- CVE-2017-749628İzleyin
fedora-arm-installer up to and including 1.99.16 is vulnerable to local privilege escalation due to lack of checking the error condition of
YüksekCVSS 7,0İstismar yokEPSS %0fedoraproject · arm installer26 Haz 2017
- CVE-2020-1438327İzleyin
A flaw was found in samba's DNS server.
OrtaCVSS 6,5İstismar yokEPSS %2samba · samba1 Ara 2020
- CVE-2022-2216026İzleyin
Junos OS: MX Series: The bbe-smgd process crashes if an unsupported configuration exists and a PPPoE client sends a specific message
OrtaCVSS 6,5İstismar yokEPSS %0juniper · junos18 Oca 2022
- CVE-2022-2084924İzleyin
Cisco IOS XR Software Broadband Network Gateway PPPoE Denial of Service Vulnerability
OrtaCVSS 6,1İstismar yokEPSS %0cisco · ios xr15 Kas 2024
- CVE-2018-109122İzleyin
In the flush_tmregs_to_thread function in arch/powerpc/kernel/ptrace.c in the Linux kernel before 4.13.5, a guest kernel crash can be trigge
OrtaCVSS 5,5İstismar yokEPSS %0linux · linux kernel27 Mar 2018
- CVE-2023-057221İzleyin
Unchecked Error Condition in froxlor/froxlor
OrtaCVSS 5,3İstismar yokEPSS %1froxlor · froxlor29 Oca 2023