CWE-392 · 9 kayıt
Missing Report of Error Condition
Bu sınıftaki CVE’ler
9 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
36İzleyin | CVE-2025-32743İstismar yok | In ConnMan through 1.44, the lookup string in ns_resolv in dnsproxy.c can be NULL or an empty string when the TC (Truncated) bit is set in aconnman · connman · CWE-392 | Kritik9,0 | — | %0,5 | 10 Nis 2025 |
32İzleyin | CVE-2017-2342İstismar yok | SRX Series: MACsec failure to report errorsjuniper · junos · CWE-392 | Yüksek8,1 | — | %0,6 | 17 Tem 2017 |
30İzleyin | CVE-2026-42246İstismar yok | net-imap vulnerable to STARTTLS stripping via invalid response timingruby-lang · net\ · CWE-392 | Yüksek7,6 | — | %0,3 | 9 May 2026 |
28İzleyin | CVE-2025-23270İstismar yok | NVIDIA Jetson Linux contains a vulnerability in UEFI Management mode, where an unprivileged local attacker may cause exposure of sensitive invidia · jetson orin, igx orin and xavier devices · CWE-392 | Yüksek7,1 | — | %0,2 | 17 Tem 2025 |
26İzleyin | CVE-2024-12797İstismar yok | RFC7250 handshakes with unauthenticated servers don't abort as expectedopenssl · openssl · CWE-392 | Orta6,3 | — | %2,5 | 11 Şub 2025 |
26İzleyin | CVE-2025-26268İstismar yok | DragonflyDB Dragonfly before 1.27.0 allows authenticated users to cause a denial of service (daemon crash) via a crafted Redis command.dragonflydb · dragonfly · CWE-392 | Orta6,5 | — | %0,4 | 17 Nis 2025 |
23İzleyin | CVE-2026-20005İstismar yok | Multiple Cisco products are affected by a vulnerability in the Snort 3 Detection Engine that could allow an unauthenticated, remote attackercisco · cyber vision · CWE-392 | Orta5,8 | — | %0,5 | 4 Mar 2026 |
12İzleyin | CVE-2025-59398İstismar yok | The OCPP implementation in libocpp before 0.26.2 allows a denial of service (EVerest crash) via JSON input larger than 255 characters, becaueverest · libocpp · CWE-392 | Düşük3,1 | — | %0,2 | 15 Eyl 2025 |
10İzleyin | CVE-2023-48430İstismar yok | A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 2).siemens · sinec ins · CWE-392 | Düşük2,7 | — | %0,6 | 12 Ara 2023 |
- CVE-2025-3274336İzleyin
In ConnMan through 1.44, the lookup string in ns_resolv in dnsproxy.c can be NULL or an empty string when the TC (Truncated) bit is set in a
KritikCVSS 9,0İstismar yokEPSS %1connman · connman10 Nis 2025
- CVE-2017-234232İzleyin
SRX Series: MACsec failure to report errors
YüksekCVSS 8,1İstismar yokEPSS %1juniper · junos17 Tem 2017
- CVE-2026-4224630İzleyin
net-imap vulnerable to STARTTLS stripping via invalid response timing
YüksekCVSS 7,6İstismar yokEPSS %0ruby-lang · net\9 May 2026
- CVE-2025-2327028İzleyin
NVIDIA Jetson Linux contains a vulnerability in UEFI Management mode, where an unprivileged local attacker may cause exposure of sensitive i
YüksekCVSS 7,1İstismar yokEPSS %0nvidia · jetson orin, igx orin and xavier devices17 Tem 2025
- CVE-2024-1279726İzleyin
RFC7250 handshakes with unauthenticated servers don't abort as expected
OrtaCVSS 6,3İstismar yokEPSS %3openssl · openssl11 Şub 2025
- CVE-2025-2626826İzleyin
DragonflyDB Dragonfly before 1.27.0 allows authenticated users to cause a denial of service (daemon crash) via a crafted Redis command.
OrtaCVSS 6,5İstismar yokEPSS %0dragonflydb · dragonfly17 Nis 2025
- CVE-2026-2000523İzleyin
Multiple Cisco products are affected by a vulnerability in the Snort 3 Detection Engine that could allow an unauthenticated, remote attacker
OrtaCVSS 5,8İstismar yokEPSS %1cisco · cyber vision4 Mar 2026
- CVE-2025-5939812İzleyin
The OCPP implementation in libocpp before 0.26.2 allows a denial of service (EVerest crash) via JSON input larger than 255 characters, becau
DüşükCVSS 3,1İstismar yokEPSS %0everest · libocpp15 Eyl 2025
- CVE-2023-4843010İzleyin
A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 2).
DüşükCVSS 2,7İstismar yokEPSS %1siemens · sinec ins12 Ara 2023