İçeriğe atla
Noroxi

CWE-399 · 2.632 kayıt

Resource Management Errors

Bu sınıftaki CVE’ler

2.632 kayıt

  • Use-after-free vulnerability in the Peer Objects component (aka iepeers.dll) in Microsoft Internet Explorer 6, 6 SP1, and 7 allows remote at

    YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %82

    microsoft · internet explorer10 Mar 2010

  • CVE-2009-3103
    68Bu hafta

    Array index error in the SMBv2 protocol implementation in srv2.sys in Microsoft Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold a

    KritikCVSS 10,0SilahlaştırılmışEPSS %92

    microsoft · windows server 20088 Eyl 2009

  • CVE-2009-0075
    63Bu hafta

    Microsoft Internet Explorer 7 does not properly handle errors during attempted access to deleted objects, which allows remote attackers to e

    KritikCVSS 9,3SilahlaştırılmışEPSS %85

    microsoft · internet explorer10 Şub 2009

  • CVE-2018-0156
    63Bu hafta

    A vulnerability in the Smart Install feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker

    YüksekCVSS 7,5KEVSilahlaştırılmışEPSS %9

    cisco · ios28 Mar 2018

  • CVE-2011-0065
    62Bu hafta

    Use-after-free vulnerability in Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey before 2.0.14, allows remote attackers

    KritikCVSS 10,0SilahlaştırılmışEPSS %74

    mozilla · firefox7 May 2011

  • CVE-2018-0154
    62Bu hafta

    A vulnerability in the crypto engine of the Cisco Integrated Services Module for VPN (ISM-VPN) running Cisco IOS Software could allow an una

    YüksekCVSS 7,5KEVSilahlaştırılmışEPSS %7

    cisco · ios28 Mar 2018

  • CVE-2017-12231
    62Bu hafta

    A vulnerability in the implementation of Network Address Translation (NAT) functionality in Cisco IOS 12.4 through 15.6 could allow an unaut

    YüksekCVSS 7,5KEVSilahlaştırılmışEPSS %7

    cisco · ios28 Eyl 2017

  • CVE-2017-12237
    62Bu hafta

    A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco IOS 15.0 through 15.6 and Cisco IOS XE 3.5 through 16.5 could

    YüksekCVSS 7,5KEVSilahlaştırılmışEPSS %7

    cisco · ios28 Eyl 2017

  • CVE-2017-6627
    62Bu hafta

    A vulnerability in the UDP processing code of Cisco IOS 15.1, 15.2, and 15.4 and IOS XE 3.14 through 3.18 could allow an unauthenticated, re

    YüksekCVSS 7,5KEVSilahlaştırılmışEPSS %6

    cisco · ios7 Eyl 2017

  • CVE-2010-3971
    61Bu hafta

    Use-after-free vulnerability in the CSharedStyleSheet::Notify function in the Cascading Style Sheets (CSS) parser in mshtml.dll, as used in

    KritikCVSS 9,3SilahlaştırılmışEPSS %82

    microsoft · internet explorer22 Ara 2010

  • CVE-2008-4844
    57Planlayın

    Use-after-free vulnerability in the CRecordInstance::TransferToDestination function in mshtml.dll in Microsoft Internet Explorer 5.01, 6, 6

    KritikCVSS 9,3SilahlaştırılmışEPSS %67

    microsoft · internet explorer11 Ara 2008

  • CVE-2017-12232
    57Planlayın

    A vulnerability in the implementation of a protocol in Cisco Integrated Services Routers Generation 2 (ISR G2) Routers running Cisco IOS 15.

    OrtaCVSS 6,5KEVSilahlaştırılmışEPSS %2

    cisco · ios28 Eyl 2017

  • CVE-2017-12238
    57Planlayın

    A vulnerability in the Virtual Private LAN Service (VPLS) code of Cisco IOS 15.0 through 15.4 for Cisco Catalyst 6800 Series Switches could

    OrtaCVSS 6,5KEVSilahlaştırılmışEPSS %2

    cisco · ios28 Eyl 2017

  • CVE-2009-2526
    56Planlayın

    Microsoft Windows Vista Gold, SP1, and SP2 and Server 2008 Gold and SP2 do not properly validate fields in SMBv2 packets, which allows remot

    YüksekCVSS 7,8Kavram kanıtıEPSS %82

    microsoft · windows server 200814 Eki 2009

  • CVE-2015-1868
    56Planlayın

    The label decompression functionality in PowerDNS Recursor 3.5.x, 3.6.x before 3.6.3, and 3.7.x before 3.7.2 and Authoritative (Auth) Server

    YüksekCVSS 7,8İstismar yokEPSS %82

    powerdns · authoritative18 May 2015

  • CVE-2018-0161
    56Planlayın

    A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS Software running on certain models of Cisco Catalyst

    OrtaCVSS 6,3KEVSilahlaştırılmışEPSS %4

    cisco · ios28 Mar 2018

  • CVE-2015-0015
    55Planlayın

    Microsoft Windows Server 2003 SP2, Server 2008 SP2 and R2 SP1, and Server 2012 Gold and R2 allow remote attackers to cause a denial of servi

    YüksekCVSS 7,8İstismar yokEPSS %79

    microsoft · windows server 200313 Oca 2015

  • CVE-2010-0477
    55Planlayın

    The SMB client in Microsoft Windows Server 2008 R2 and Windows 7 does not properly handle (1) SMBv1 and (2) SMBv2 response packets, which al

    KritikCVSS 10,0Kavram kanıtıEPSS %50

    microsoft · windows 714 Nis 2010

  • CVE-2013-0025
    54Planlayın

    Use-after-free vulnerability in Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code via a crafted web site that

    KritikCVSS 9,3SilahlaştırılmışEPSS %56

    microsoft · internet explorer13 Şub 2013

  • CVE-2018-0179
    54Planlayın

    Multiple vulnerabilities in the Login Enhancements (Login Block) feature of Cisco IOS Software could allow an unauthenticated, remote attack

    OrtaCVSS 5,9KEVSilahlaştırılmışEPSS %5

    cisco · ios28 Mar 2018

  • CVE-2018-0180
    54Planlayın

    Multiple vulnerabilities in the Login Enhancements (Login Block) feature of Cisco IOS Software could allow an unauthenticated, remote attack

    OrtaCVSS 5,9KEVSilahlaştırılmışEPSS %5

    cisco · ios28 Mar 2018

  • CVE-2008-3013
    53Planlayın

    gdiplus.dll in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2008,

    KritikCVSS 9,3Kavram kanıtıEPSS %52

    microsoft · digital image suite10 Eyl 2008

  • CVE-2008-3656
    52Planlayın

    Algorithmic complexity vulnerability in the WEBrick::HTTPUtils.split_header_value function in WEBrick::HTTP::DefaultFileHandler in WEBrick i

    YüksekCVSS 7,8SilahlaştırılmışEPSS %70

    ruby-lang · ruby12 Ağu 2008

  • CVE-2009-1138
    52Planlayın

    The LDAP service in Active Directory on Microsoft Windows 2000 SP4 does not properly free memory for LDAP and LDAPS requests, which allows r

    KritikCVSS 10,0İstismar yokEPSS %39

    microsoft · windows 200010 Haz 2009

  • CVE-2008-4023
    52Planlayın

    Active Directory in Microsoft Windows 2000 SP4 does not properly allocate memory for (1) LDAP and (2) LDAPS requests, which allows remote at

    KritikCVSS 10,0İstismar yokEPSS %39

    microsoft · windows 200014 Eki 2008

Tüm zafiyet sınıfları