CWE-476 · 5.304 kayıt
NULL Pointer Dereference
Bu sınıftaki CVE’ler
5.309 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
58Planlayın | CVE-2023-21758İstismar yok | Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerabilitymicrosoft · windows 10 · CWE-476 | Yüksek7,5 | — | %92,5 | 10 Oca 2023 |
57Planlayın | CVE-2023-21547İstismar yok | Internet Key Exchange (IKE) Protocol Denial of Service Vulnerabilitymicrosoft · windows 10 1607 · CWE-476 | Yüksek7,5 | — | %89,3 | 10 Oca 2023 |
57Planlayın | CVE-2021-44224İstismar yok | Possible NULL dereference or SSRF in forward proxy configurations in Apache HTTP Server 2.4.51 and earlierapache · http server · CWE-476 | Yüksek8,2 | — | %82,3 | 20 Ara 2021 |
55Planlayın | CVE-2016-0742İstismar yok | The resolver in nginx before 1.8.1 and 1.9.x before 1.9.10 allows remote attackers to cause a denial of service (invalid pointer dereferencef5 · nginx · CWE-476 | Yüksek7,5 | — | %82,4 | 15 Şub 2016 |
55Planlayın | CVE-2026-21525Silahlaştırılmış | Windows Remote Access Connection Manager Denial of Service Vulnerabilitymicrosoft · windows 10 1607 · CWE-476 | Orta6,2 | KEV | %4,8 | 10 Şub 2026 |
51Planlayın | CVE-2023-38171İstismar yok | Microsoft QUIC Denial of Service Vulnerabilitymicrosoft · .net · CWE-476 | Yüksek7,5 | — | %69,7 | 10 Eki 2023 |
50Planlayın | CVE-2021-26690Kavram kanıtı | mod_session NULL pointer dereferenceapache · http server · CWE-476 | Yüksek7,5 | — | %65,3 | 10 Haz 2021 |
49Planlayın | CVE-2021-34798İstismar yok | NULL pointer dereference in httpd coreapache · http server · CWE-476 | Yüksek7,5 | — | %64,5 | 16 Eyl 2021 |
47Planlayın | CVE-2025-21285İstismar yok | Microsoft Message Queuing (MSMQ) Denial of Service Vulnerabilitymicrosoft · windows 10 1507 · CWE-476 | Yüksek7,5 | — | %55,7 | 14 Oca 2025 |
47Planlayın | CVE-2018-8011Kavram kanıtı | mod_md, DoS via Coredumps on specially crafted requestsapache · http server · CWE-476 | Yüksek7,5 | — | %55,6 | 18 Tem 2018 |
47Planlayın | CVE-2017-3730Kavram kanıtı | Bad (EC)DHE parameters cause a client crashopenssl · openssl · CWE-476 | Yüksek7,5 | — | %55,3 | 4 May 2017 |
46Planlayın | CVE-2004-0389Kavram kanıtı | RealNetworks Helix Universal Server 9.0.1 and 9.0.2 allows remote attackers to cause a denial of service (crash) via malformed requests thatrealnetworks · helix universal server · CWE-476 | Yüksek7,5 | — | %54,9 | 1 Haz 2004 |
46Planlayın | CVE-2017-7659İstismar yok | A maliciously constructed HTTP/2 request could cause mod_http2 in Apache HTTP Server 2.4.24, 2.4.25 to dereference a NULL pointer and crash apache · http server · CWE-476 | Yüksek7,5 | — | %53,9 | 26 Tem 2017 |
46Planlayın | CVE-2020-1967Kavram kanıtı | Segmentation fault in SSL_check_chainopenssl · openssl · CWE-476 | Yüksek7,5 | — | %53,3 | 21 Nis 2020 |
46Planlayın | CVE-2017-15120Kavram kanıtı | An issue has been found in the parsing of authoritative answers in PowerDNS Recursor before 4.0.8, leading to a NULL pointer dereference whepowerdns · recursor · CWE-476 | Yüksek7,5 | — | %51,8 | 27 Tem 2018 |
45Planlayın | CVE-2021-31618İstismar yok | NULL pointer dereference on specially crafted HTTP/2 requestapache · http server · CWE-476 | Yüksek7,5 | — | %51,5 | 15 Haz 2021 |
45Planlayın | CVE-2020-13950İstismar yok | mod_proxy_http NULL pointer dereferenceapache · http server · CWE-476 | Yüksek7,5 | — | %49,4 | 10 Haz 2021 |
45Planlayın | CVE-2017-3169İstismar yok | In Apache httpd 2.2.x before 2.2.33 and 2.4.x before 2.4.26, mod_ssl may dereference a NULL pointer when third-party modules call ap_hook_prapache · http server · CWE-476 | Kritik9,8 | — | %20,0 | 19 Haz 2017 |
44Planlayın | CVE-2009-1386Silahlaştırılmış | ssl/s3_pkt.c in OpenSSL before 0.9.8i allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via aopenssl · openssl · CWE-476 | Orta5,0 | — | %80,1 | 4 Haz 2009 |
44Planlayın | CVE-2019-10097İstismar yok | In Apache HTTP Server 2.4.32-2.4.39, when mod_remoteip was configured to use a trusted intermediary proxy server using the "PROXY" protocol,apache · http server · CWE-476 | Yüksek7,2 | — | %52,9 | 26 Eyl 2019 |
44Planlayın | CVE-2007-0039İstismar yok | The Exchange Collaboration Data Objects (EXCDO) functionality in Microsoft Exchange Server 2000 SP3, 2003 SP1 and SP2, and 2007 allows remotmicrosoft · exchange server · CWE-476 | Yüksek7,8 | — | %44,6 | 8 May 2007 |
43Planlayın | CVE-2014-3470İstismar yok | The ssl3_send_client_key_exchange function in s3_clnt.c in OpenSSL before 0.9.8za, 1.0.0 before 1.0.0m, and 1.0.1 before 1.0.1h, when an anoopenssl · openssl · CWE-476 | Orta4,3 | — | %85,8 | 5 Haz 2014 |
43Planlayın | CVE-2025-22037İstismar yok | ksmbd: fix null pointer dereference in alloc_preauth_hash()linux · linux kernel · CWE-476 | Orta5,5 | — | %69,6 | 16 Nis 2025 |
43Planlayın | CVE-2016-4957İstismar yok | ntpd in NTP before 4.2.8p8 allows remote attackers to cause a denial of service (daemon crash) via a crypto-NAK packet.ntp · ntp · CWE-476 | Yüksek7,5 | — | %44,9 | 4 Tem 2016 |
43Planlayın | CVE-2015-3194Kavram kanıtı | crypto/rsa/rsa_ameth.c in OpenSSL 1.0.1 before 1.0.1q and 1.0.2 before 1.0.2e allows remote attackers to cause a denial of service (NULL poiopenssl · openssl · CWE-476 | Yüksek7,5 | — | %44,0 | 6 Ara 2015 |
- CVE-2023-2175858Planlayın
Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability
YüksekCVSS 7,5İstismar yokEPSS %93microsoft · windows 1010 Oca 2023
- CVE-2023-2154757Planlayın
Internet Key Exchange (IKE) Protocol Denial of Service Vulnerability
YüksekCVSS 7,5İstismar yokEPSS %89microsoft · windows 10 160710 Oca 2023
- CVE-2021-4422457Planlayın
Possible NULL dereference or SSRF in forward proxy configurations in Apache HTTP Server 2.4.51 and earlier
YüksekCVSS 8,2İstismar yokEPSS %82apache · http server20 Ara 2021
- CVE-2016-074255Planlayın
The resolver in nginx before 1.8.1 and 1.9.x before 1.9.10 allows remote attackers to cause a denial of service (invalid pointer dereference
YüksekCVSS 7,5İstismar yokEPSS %82f5 · nginx15 Şub 2016
- CVE-2026-2152555Planlayın
Windows Remote Access Connection Manager Denial of Service Vulnerability
OrtaCVSS 6,2KEVSilahlaştırılmışEPSS %5microsoft · windows 10 160710 Şub 2026
- CVE-2023-3817151Planlayın
Microsoft QUIC Denial of Service Vulnerability
YüksekCVSS 7,5İstismar yokEPSS %70microsoft · .net10 Eki 2023
- CVE-2021-2669050Planlayın
mod_session NULL pointer dereference
YüksekCVSS 7,5Kavram kanıtıEPSS %65apache · http server10 Haz 2021
- CVE-2021-3479849Planlayın
NULL pointer dereference in httpd core
YüksekCVSS 7,5İstismar yokEPSS %65apache · http server16 Eyl 2021
- CVE-2025-2128547Planlayın
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
YüksekCVSS 7,5İstismar yokEPSS %56microsoft · windows 10 150714 Oca 2025
- CVE-2018-801147Planlayın
mod_md, DoS via Coredumps on specially crafted requests
YüksekCVSS 7,5Kavram kanıtıEPSS %56apache · http server18 Tem 2018
- CVE-2017-373047Planlayın
Bad (EC)DHE parameters cause a client crash
YüksekCVSS 7,5Kavram kanıtıEPSS %55openssl · openssl4 May 2017
- CVE-2004-038946Planlayın
RealNetworks Helix Universal Server 9.0.1 and 9.0.2 allows remote attackers to cause a denial of service (crash) via malformed requests that
YüksekCVSS 7,5Kavram kanıtıEPSS %55realnetworks · helix universal server1 Haz 2004
- CVE-2017-765946Planlayın
A maliciously constructed HTTP/2 request could cause mod_http2 in Apache HTTP Server 2.4.24, 2.4.25 to dereference a NULL pointer and crash
YüksekCVSS 7,5İstismar yokEPSS %54apache · http server26 Tem 2017
- CVE-2020-196746Planlayın
Segmentation fault in SSL_check_chain
YüksekCVSS 7,5Kavram kanıtıEPSS %53openssl · openssl21 Nis 2020
- CVE-2017-1512046Planlayın
An issue has been found in the parsing of authoritative answers in PowerDNS Recursor before 4.0.8, leading to a NULL pointer dereference whe
YüksekCVSS 7,5Kavram kanıtıEPSS %52powerdns · recursor27 Tem 2018
- CVE-2021-3161845Planlayın
NULL pointer dereference on specially crafted HTTP/2 request
YüksekCVSS 7,5İstismar yokEPSS %51apache · http server15 Haz 2021
- CVE-2020-1395045Planlayın
mod_proxy_http NULL pointer dereference
YüksekCVSS 7,5İstismar yokEPSS %49apache · http server10 Haz 2021
- CVE-2017-316945Planlayın
In Apache httpd 2.2.x before 2.2.33 and 2.4.x before 2.4.26, mod_ssl may dereference a NULL pointer when third-party modules call ap_hook_pr
KritikCVSS 9,8İstismar yokEPSS %20apache · http server19 Haz 2017
- CVE-2009-138644Planlayın
ssl/s3_pkt.c in OpenSSL before 0.9.8i allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a
OrtaCVSS 5,0SilahlaştırılmışEPSS %80openssl · openssl4 Haz 2009
- CVE-2019-1009744Planlayın
In Apache HTTP Server 2.4.32-2.4.39, when mod_remoteip was configured to use a trusted intermediary proxy server using the "PROXY" protocol,
YüksekCVSS 7,2İstismar yokEPSS %53apache · http server26 Eyl 2019
- CVE-2007-003944Planlayın
The Exchange Collaboration Data Objects (EXCDO) functionality in Microsoft Exchange Server 2000 SP3, 2003 SP1 and SP2, and 2007 allows remot
YüksekCVSS 7,8İstismar yokEPSS %45microsoft · exchange server8 May 2007
- CVE-2014-347043Planlayın
The ssl3_send_client_key_exchange function in s3_clnt.c in OpenSSL before 0.9.8za, 1.0.0 before 1.0.0m, and 1.0.1 before 1.0.1h, when an ano
OrtaCVSS 4,3İstismar yokEPSS %86openssl · openssl5 Haz 2014
- CVE-2025-2203743Planlayın
ksmbd: fix null pointer dereference in alloc_preauth_hash()
OrtaCVSS 5,5İstismar yokEPSS %70linux · linux kernel16 Nis 2025
- CVE-2016-495743Planlayın
ntpd in NTP before 4.2.8p8 allows remote attackers to cause a denial of service (daemon crash) via a crypto-NAK packet.
YüksekCVSS 7,5İstismar yokEPSS %45ntp · ntp4 Tem 2016
- CVE-2015-319443Planlayın
crypto/rsa/rsa_ameth.c in OpenSSL 1.0.1 before 1.0.1q and 1.0.2 before 1.0.2e allows remote attackers to cause a denial of service (NULL poi
YüksekCVSS 7,5Kavram kanıtıEPSS %44openssl · openssl6 Ara 2015