CWE-406 · 20 kayıt
Insufficient Control of Network Message Volume (Network Amplification)
Bu sınıftaki CVE’ler
20 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
65Bu hafta | CVE-2022-0028Silahlaştırılmış | PAN-OS: Reflected Amplification Denial-of-Service (DoS) Vulnerability in URL Filteringpaloaltonetworks · pan-os · CWE-406 | Yüksek8,6 | KEV | %2,4 | 10 Ağu 2022 |
39İzleyin | CVE-2021-38135İstismar yok | Possible External service interaction Vulnerability in OpenText iManagermicrofocus · imanager · CWE-406 | Kritik9,8 | — | %0,5 | 22 Kas 2024 |
38İzleyin | CVE-2021-38425İstismar yok | eProsima Fast DDS Network Amplificationeprosima · fast dds · CWE-406 | Kritik9,1 | — | %5,2 | 5 May 2022 |
36İzleyin | CVE-2021-38487İstismar yok | Potential Network Amplification and Information Exposure in RTI Connext Professional and Connext Microrti · connext dds micro · CWE-406 | Yüksek8,8 | — | %3,4 | 5 May 2022 |
36İzleyin | CVE-2021-38429İstismar yok | OCI OpenDDS Secure Network Amplificationobjectcomputing · opendds · CWE-406 | Kritik9,1 | — | %1,5 | 5 May 2022 |
33İzleyin | CVE-2021-43547İstismar yok | TwinOaks Computing CoreDX DDS Secure Network Amplificationtwinoakscomputing · coredx dds · CWE-406 | Yüksek8,2 | — | %2,5 | 5 May 2022 |
32İzleyin | CVE-2024-2169Kavram kanıtı | Implementations of UDP application protocols are susceptible to network loops and denial of servicemikrotik · routeros-tftp · CWE-406 | Yüksek7,5 | — | %5,4 | 19 Mar 2024 |
30İzleyin | CVE-2020-10772İstismar yok | An incomplete fix for CVE-2020-12662 was shipped for Unbound in Red Hat Enterprise Linux 7, as part of erratum RHSA-2020:2414.nlnetlabs · unbound · CWE-406 | Yüksek7,5 | — | %1,3 | 27 Kas 2020 |
30İzleyin | CVE-2024-25015İstismar yok | IBM MQ denial of serviceibm · mq · CWE-406 | Yüksek7,5 | — | %0,9 | 1 May 2024 |
30İzleyin | CVE-2021-4234İstismar yok | OpenVPN Access Server 2.10 and prior versions are susceptible to resending multiple packets in a response to a reset packet sent from the clopenvpn · openvpn access server · CWE-406 | Yüksek7,5 | — | %0,9 | 6 Tem 2022 |
30İzleyin | CVE-2023-49203İstismar yok | Technitium 11.5.3 allows remote attackers to cause a denial of service (bandwidth amplification) because the DNSBomb manipulation causes acctechnitium · dnsserver · CWE-406 | Yüksek7,5 | — | %0,6 | 18 Eyl 2024 |
30İzleyin | CVE-2023-28456İstismar yok | An issue was discovered in Technitium through 11.0.2.technitium · dnsserver · CWE-406 | Yüksek7,5 | — | %0,5 | 18 Eyl 2024 |
30İzleyin | CVE-2023-28455İstismar yok | An issue was discovered in Technitium through 11.0.2.technitium · dnsserver · CWE-406 | Yüksek7,5 | — | %0,5 | 18 Eyl 2024 |
26İzleyin | CVE-2026-68080İstismar yok | Apache Qpid Broker-J: Unbounded echo flow responses can lead to denial of serviceapache · qpid broker-j · CWE-406 | Orta6,5 | — | %0,7 | 5 Ağu 2026 |
21İzleyin | CVE-2026-50045İstismar yok | 'max-global-quota' reset by DNSSEC validation restartsnlnetlabs · unbound · CWE-406 | Orta5,3 | — | %0,5 | 22 Tem 2026 |
21İzleyin | CVE-2026-86202İstismar yok | PocketMine-MP before 5.39.2 Network Amplification via ActorEventPacketpmmp · pocketmine-mp · CWE-406 | Orta5,3 | — | %0,4 | 9 Eyl 2026 |
21İzleyin | CVE-2025-58066İstismar yok | DoS Vulnerability in ntpd-rspendulum-project · ntpd-rs · CWE-406 | Orta5,3 | — | %0,3 | 29 Ağu 2025 |
18İzleyin | CVE-2026-16515İstismar yok | ICMPv6 error messages sent for multicast-destined packets and non-unique source addresses enable network amplification in Zephyr's IPv6 stackzephyrproject · zephyr · CWE-406 | Orta4,7 | — | %0,2 | 18 Eyl 2026 |
17İzleyin | CVE-2014-125036İstismar yok | drybjed ansible-ntp main.yml amplificationansible-ntp project · ansible-ntp · CWE-406 | Orta4,3 | — | %0,4 | 2 Oca 2023 |
14İzleyin | CVE-2019-14850İstismar yok | A denial of service vulnerability was discovered in nbdkit 1.12.7, 1.14.1 and 1.15.1.nbdkit project · nbdkit · CWE-406 | Düşük3,7 | — | %1,6 | 18 Mar 2021 |
- CVE-2022-002865Bu hafta
PAN-OS: Reflected Amplification Denial-of-Service (DoS) Vulnerability in URL Filtering
YüksekCVSS 8,6KEVSilahlaştırılmışEPSS %2paloaltonetworks · pan-os10 Ağu 2022
- CVE-2021-3813539İzleyin
Possible External service interaction Vulnerability in OpenText iManager
KritikCVSS 9,8İstismar yokEPSS %0microfocus · imanager22 Kas 2024
- CVE-2021-3842538İzleyin
eProsima Fast DDS Network Amplification
KritikCVSS 9,1İstismar yokEPSS %5eprosima · fast dds5 May 2022
- CVE-2021-3848736İzleyin
Potential Network Amplification and Information Exposure in RTI Connext Professional and Connext Micro
YüksekCVSS 8,8İstismar yokEPSS %3rti · connext dds micro5 May 2022
- CVE-2021-3842936İzleyin
OCI OpenDDS Secure Network Amplification
KritikCVSS 9,1İstismar yokEPSS %1objectcomputing · opendds5 May 2022
- CVE-2021-4354733İzleyin
TwinOaks Computing CoreDX DDS Secure Network Amplification
YüksekCVSS 8,2İstismar yokEPSS %3twinoakscomputing · coredx dds5 May 2022
- CVE-2024-216932İzleyin
Implementations of UDP application protocols are susceptible to network loops and denial of service
YüksekCVSS 7,5Kavram kanıtıEPSS %5mikrotik · routeros-tftp19 Mar 2024
- CVE-2020-1077230İzleyin
An incomplete fix for CVE-2020-12662 was shipped for Unbound in Red Hat Enterprise Linux 7, as part of erratum RHSA-2020:2414.
YüksekCVSS 7,5İstismar yokEPSS %1nlnetlabs · unbound27 Kas 2020
- CVE-2024-2501530İzleyin
IBM MQ denial of service
YüksekCVSS 7,5İstismar yokEPSS %1ibm · mq1 May 2024
- CVE-2021-423430İzleyin
OpenVPN Access Server 2.10 and prior versions are susceptible to resending multiple packets in a response to a reset packet sent from the cl
YüksekCVSS 7,5İstismar yokEPSS %1openvpn · openvpn access server6 Tem 2022
- CVE-2023-4920330İzleyin
Technitium 11.5.3 allows remote attackers to cause a denial of service (bandwidth amplification) because the DNSBomb manipulation causes acc
YüksekCVSS 7,5İstismar yokEPSS %1technitium · dnsserver18 Eyl 2024
- CVE-2023-2845630İzleyin
An issue was discovered in Technitium through 11.0.2.
YüksekCVSS 7,5İstismar yokEPSS %1technitium · dnsserver18 Eyl 2024
- CVE-2023-2845530İzleyin
An issue was discovered in Technitium through 11.0.2.
YüksekCVSS 7,5İstismar yokEPSS %1technitium · dnsserver18 Eyl 2024
- CVE-2026-6808026İzleyin
Apache Qpid Broker-J: Unbounded echo flow responses can lead to denial of service
OrtaCVSS 6,5İstismar yokEPSS %1apache · qpid broker-j5 Ağu 2026
- CVE-2026-5004521İzleyin
'max-global-quota' reset by DNSSEC validation restarts
OrtaCVSS 5,3İstismar yokEPSS %0nlnetlabs · unbound22 Tem 2026
- CVE-2026-8620221İzleyin
PocketMine-MP before 5.39.2 Network Amplification via ActorEventPacket
OrtaCVSS 5,3İstismar yokEPSS %0pmmp · pocketmine-mp9 Eyl 2026
- CVE-2025-5806621İzleyin
DoS Vulnerability in ntpd-rs
OrtaCVSS 5,3İstismar yokEPSS %0pendulum-project · ntpd-rs29 Ağu 2025
- CVE-2026-1651518İzleyin
ICMPv6 error messages sent for multicast-destined packets and non-unique source addresses enable network amplification in Zephyr's IPv6 stack
OrtaCVSS 4,7İstismar yokEPSS %0zephyrproject · zephyr18 Eyl 2026
- CVE-2014-12503617İzleyin
drybjed ansible-ntp main.yml amplification
OrtaCVSS 4,3İstismar yokEPSS %0ansible-ntp project · ansible-ntp2 Oca 2023
- CVE-2019-1485014İzleyin
A denial of service vulnerability was discovered in nbdkit 1.12.7, 1.14.1 and 1.15.1.
DüşükCVSS 3,7İstismar yokEPSS %2nbdkit project · nbdkit18 Mar 2021