İçeriğe atla
Noroxi

CWE-684 · 27 kayıt

Incorrect Provision of Specified Functionality

Bu sınıftaki CVE’ler

27 kayıt

  • CVE-2023-24845
    39İzleyin

    A vulnerability has been identified in RUGGEDCOM i800, RUGGEDCOM i800NC, RUGGEDCOM i801, RUGGEDCOM i801NC, RUGGEDCOM i802, RUGGEDCOM i802NC,

    KritikCVSS 9,8İstismar yokEPSS %1

    siemens · ruggedcom ros8 Ağu 2023

  • CVE-2026-40685
    39İzleyin

    In Exim before 4.99.2, when JSON lookup is enabled, an out-of-bounds heap write can occur when a JSON operator encounters malformed JSON in

    KritikCVSS 9,8İstismar yokEPSS %1

    exim · exim30 Nis 2026

  • CVE-2024-50357
    39İzleyin

    FutureNet NXR series routers provided by Century Systems Co., Ltd.

    KritikCVSS 9,8İstismar yokEPSS %1

    century systems co., ltd. · futurenet nxr-g110 series29 Kas 2024

  • CVE-2026-52735
    37İzleyin

    ZEBRA: Consensus divergence via P2SH sigop undercount in pure-Rust disabled-opcode parser

    KritikCVSS 9,3İstismar yokEPSS %1

    zcashfoundation · zebra18 Ağu 2026

  • CVE-2026-44597
    36İzleyin

    Tor before 0.4.9.7 has an out-of-bounds read when an END, a TRUNCATE, or a TRUNCATED cell lacks a reason in its payload, aka TROVE-2026-011.

    KritikCVSS 9,1İstismar yokEPSS %1

    torproject · tor6 May 2026

  • CVE-2024-6425
    36İzleyin

    Incorrect Provision of Specified Functionality vulnerability in MESbook

    KritikCVSS 9,1İstismar yokEPSS %1

    mesbook · mesbook1 Tem 2024

  • CVE-2025-66384
    32İzleyin

    app/Controller/EventsController.php in MISP before 2.5.24 has invalid logic in checking for uploaded file validity, related to tmp_name.

    YüksekCVSS 8,2İstismar yokEPSS %0

    misp · misp28 Kas 2025

  • CVE-2023-5363
    31İzleyin

    Incorrect cipher key & IV length processing

    YüksekCVSS 7,5İstismar yokEPSS %3

    openssl · openssl25 Eki 2023

  • CVE-2025-47227
    31İzleyin

    In the Production Environment extension in Netmake ScriptCase through 9.12.006 (23), the Administrator password reset mechanism is mishandle

    YüksekCVSS 7,5Kavram kanıtıEPSS %2

    scriptcase · scriptcase4 Tem 2025

  • CVE-2026-40684
    30İzleyin

    In Exim before 4.99.2, on systems using musl libc (not glibc), an attacker can crash the connection instance when malformed DNS data is pres

    YüksekCVSS 7,5İstismar yokEPSS %1

    exim · exim30 Nis 2026

  • CVE-2024-20317
    29İzleyin

    Cisco IOS XR Software Layer 2 Services Denial of Service Vulnerability

    YüksekCVSS 7,4İstismar yokEPSS %0

    cisco · ios xr11 Eyl 2024

  • CVE-2023-4258
    26İzleyin

    bt: mesh: vulnerability in provisioning protocol implementation on provisionee side

    OrtaCVSS 6,5İstismar yokEPSS %1

    zephyrproject · zephyr25 Eyl 2023

  • CVE-2024-6502
    26İzleyin

    Incorrect Provision of Specified Functionality in GitLab

    OrtaCVSS 6,5İstismar yokEPSS %0

    gitlab · gitlab22 Ağu 2024

  • CVE-2026-42255
    26İzleyin

    Technitium DNS Server before 15.0 allows DNS traffic amplification via cyclic name server delegation.

    OrtaCVSS 6,5İstismar yokEPSS %0

    technitium · dnsserver26 Nis 2026

  • CVE-2025-58325
    26İzleyin

    An Incorrect Provision of Specified Functionality vulnerability [CWE-684] in FortiOS 7.6.0, 7.4.0 through 7.4.5, 7.2.5 through 7.2.10, 7.0.0

    OrtaCVSS 6,7İstismar yokEPSS %0

    fortinet · fortios14 Eki 2025

  • CVE-2022-23728
    24İzleyin

    Attacker can reset the device with AT Command in the process of rebooting the device.

    OrtaCVSS 6,1İstismar yokEPSS %0

    google · android21 Oca 2022

  • CVE-2026-79126
    23İzleyin

    Incorrect provision of specified functionality in Proxy in Google Chrome on on Windows prior to 152.0.7977.65 allowed an adjacent attacker t

    OrtaCVSS 5,9İstismar yokEPSS %0

    google · chrome25 Ağu 2026

  • CVE-2023-5158
    22İzleyin

    Possible dos from guest to host invringh_kiov_advance in vhost driver at drivers/vhost/vringh.c

    OrtaCVSS 5,5İstismar yokEPSS %0

    linux · linux kernel25 Eyl 2023

  • CVE-2025-54567
    21İzleyin

    hw/pci/pcie_sriov.c in QEMU through 10.0.3 mishandles the VF Enable bit write mask, a related issue to CVE-2024-26327.

    OrtaCVSS 5,4İstismar yokEPSS %0

    qemu · qemu24 Tem 2025

  • CVE-2024-5005
    17İzleyin

    Incorrect Provision of Specified Functionality in GitLab

    OrtaCVSS 4,3İstismar yokEPSS %0

    gitlab · gitlab11 Eki 2024

  • CVE-2024-8974
    17İzleyin

    Incorrect Provision of Specified Functionality in GitLab

    OrtaCVSS 4,3İstismar yokEPSS %0

    gitlab · gitlab26 Eyl 2024

  • CVE-2020-11054
    14İzleyin

    Incorrect Provision of Specified Functionality in qutebrowser

    DüşükCVSS 3,5İstismar yokEPSS %2

    qutebrowser · qutebrowser7 May 2020

  • CVE-2025-54568
    14İzleyin

    Akamai Rate Control alpha before 2025 allows attackers to send requests above the stipulated thresholds because the rate is measured separat

    DüşükCVSS 3,7İstismar yokEPSS %0

    akamai · rate control25 Tem 2025

  • CVE-2026-35379
    13İzleyin

    uutils coreutils tr Local Logic Error and Data Integrity Issue in Character Class Handling

    DüşükCVSS 3,3İstismar yokEPSS %0

    uutils · coreutils22 Nis 2026

  • CVE-2026-35381
    13İzleyin

    uutils coreutils cut Local Logic Error and Data Integrity Issue in Output Filtering

    DüşükCVSS 3,3İstismar yokEPSS %0

    uutils · coreutils22 Nis 2026

Tüm zafiyet sınıfları