CWE-417 · 12 kayıt
Communication Channel Errors
Bu sınıftaki CVE’ler
12 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2019-9855İstismar yok | Windows 8.3 path equivalence handling flaw allows LibreLogo script executionlibreoffice · libreoffice · CWE-417 | Kritik9,8 | — | %2,6 | 6 Eyl 2019 |
39İzleyin | CVE-2017-1000197İstismar yok | October CMS build 412 is vulnerable to file path modification in asset move functionality resulting in creating creating malicious files on octobercms · october · CWE-417 | Kritik9,8 | — | %1,2 | 16 Kas 2017 |
37İzleyin | CVE-2017-6520İstismar yok | The Multicast DNS (mDNS) responder used in BOSE Soundtouch 30 inadvertently responds to IPv4 unicast queries with source addresses that are bose · soundtouch 30 · CWE-417 | Kritik9,1 | — | %2,0 | 30 Nis 2017 |
31İzleyin | CVE-2017-7760İstismar yok | The Mozilla Windows updater modifies some files to be updated by reading the original file and applying changes to it.mozilla · firefox · CWE-417 | Yüksek7,8 | — | %0,4 | 11 Haz 2018 |
30İzleyin | CVE-2016-9879İstismar yok | An issue was discovered in Pivotal Spring Security before 3.2.10, 4.1.x before 4.1.4, and 4.2.x before 4.2.1.vmware · spring security · CWE-417 | Yüksek7,5 | — | %1,4 | 6 Oca 2017 |
30İzleyin | CVE-2018-5254İstismar yok | Arista EOS before 4.20.2F allows remote BGP peers to cause a denial of service (Rib agent restart) via a malformed path attribute in an UPDAarista · eos · CWE-417 | Yüksek7,5 | — | %1,2 | 12 Nis 2018 |
30İzleyin | CVE-2018-14900İstismar yok | On EPSON WF-2750 printers with firmware JP02I2, there is no filtering of print jobs.epson · wf-2750 firmware · CWE-417 | Yüksek7,5 | — | %1,1 | 30 Ağu 2018 |
24İzleyin | CVE-2019-14318İstismar yok | Crypto++ 8.3.0 and earlier contains a timing side channel in ECDSA signature generation.cryptopp · crypto\+\+ · CWE-417 | Orta5,9 | — | %2,7 | 30 Tem 2019 |
23İzleyin | CVE-2017-3969İstismar yok | SB10192 - Network Security Management (NSM) - Abuse of communication channels vulnerabilitymcafee · network security manager · CWE-417 | Orta5,9 | — | %0,8 | 4 Nis 2018 |
21İzleyin | CVE-2017-2712İstismar yok | S3300 V100R006C05 have an Ethernet in the First Mile (EFM) flapping vulnerability due to the lack of type-length-value (TLV) consistency chehuawei · s3300 firmware · CWE-417 | Orta5,3 | — | %1,1 | 22 Kas 2017 |
14İzleyin | CVE-2017-8822İstismar yok | In Tor before 0.2.5.16, 0.2.6 through 0.2.8 before 0.2.8.17, 0.2.9 before 0.2.9.14, 0.3.0 before 0.3.0.13, and 0.3.1 before 0.3.1.9, relays tor project · tor · CWE-417 | Düşük3,7 | — | %0,9 | 3 Ara 2017 |
13İzleyin | CVE-2018-6556İstismar yok | The lxc-user-nic component of LXC allows unprivileged users to open arbitrary filescanonical · ubuntu linux · CWE-417 | Düşük3,3 | — | %0,3 | 10 Ağu 2018 |
- CVE-2019-985540Planlayın
Windows 8.3 path equivalence handling flaw allows LibreLogo script execution
KritikCVSS 9,8İstismar yokEPSS %3libreoffice · libreoffice6 Eyl 2019
- CVE-2017-100019739İzleyin
October CMS build 412 is vulnerable to file path modification in asset move functionality resulting in creating creating malicious files on
KritikCVSS 9,8İstismar yokEPSS %1octobercms · october16 Kas 2017
- CVE-2017-652037İzleyin
The Multicast DNS (mDNS) responder used in BOSE Soundtouch 30 inadvertently responds to IPv4 unicast queries with source addresses that are
KritikCVSS 9,1İstismar yokEPSS %2bose · soundtouch 3030 Nis 2017
- CVE-2017-776031İzleyin
The Mozilla Windows updater modifies some files to be updated by reading the original file and applying changes to it.
YüksekCVSS 7,8İstismar yokEPSS %0mozilla · firefox11 Haz 2018
- CVE-2016-987930İzleyin
An issue was discovered in Pivotal Spring Security before 3.2.10, 4.1.x before 4.1.4, and 4.2.x before 4.2.1.
YüksekCVSS 7,5İstismar yokEPSS %1vmware · spring security6 Oca 2017
- CVE-2018-525430İzleyin
Arista EOS before 4.20.2F allows remote BGP peers to cause a denial of service (Rib agent restart) via a malformed path attribute in an UPDA
YüksekCVSS 7,5İstismar yokEPSS %1arista · eos12 Nis 2018
- CVE-2018-1490030İzleyin
On EPSON WF-2750 printers with firmware JP02I2, there is no filtering of print jobs.
YüksekCVSS 7,5İstismar yokEPSS %1epson · wf-2750 firmware30 Ağu 2018
- CVE-2019-1431824İzleyin
Crypto++ 8.3.0 and earlier contains a timing side channel in ECDSA signature generation.
OrtaCVSS 5,9İstismar yokEPSS %3cryptopp · crypto\+\+30 Tem 2019
- CVE-2017-396923İzleyin
SB10192 - Network Security Management (NSM) - Abuse of communication channels vulnerability
OrtaCVSS 5,9İstismar yokEPSS %1mcafee · network security manager4 Nis 2018
- CVE-2017-271221İzleyin
S3300 V100R006C05 have an Ethernet in the First Mile (EFM) flapping vulnerability due to the lack of type-length-value (TLV) consistency che
OrtaCVSS 5,3İstismar yokEPSS %1huawei · s3300 firmware22 Kas 2017
- CVE-2017-882214İzleyin
In Tor before 0.2.5.16, 0.2.6 through 0.2.8 before 0.2.8.17, 0.2.9 before 0.2.9.14, 0.3.0 before 0.3.0.13, and 0.3.1 before 0.3.1.9, relays
DüşükCVSS 3,7İstismar yokEPSS %1tor project · tor3 Ara 2017
- CVE-2018-655613İzleyin
The lxc-user-nic component of LXC allows unprivileged users to open arbitrary files
DüşükCVSS 3,3İstismar yokEPSS %0canonical · ubuntu linux10 Ağu 2018