İçeriğe atla
Noroxi

CWE-840 · 99 kayıt

Business Logic Errors

Bu sınıftaki CVE’ler

99 kayıt

  • CVE-2022-32207
    41Planlayın

    When curl < 7.84.0 saves cookies, alt-svc and hsts data to local files, it makes the operation atomic by finalizing the operation with a ren

    KritikCVSS 9,8İstismar yokEPSS %8

    haxx · curl7 Tem 2022

  • CVE-2021-4171
    39İzleyin

    Business Logic Errors in janeczku/calibre-web

    KritikCVSS 9,8İstismar yokEPSS %1

    janeczku · calibre-web17 Oca 2022

  • CVE-2022-4719
    39İzleyin

    Business Logic Errors in ikus060/rdiffweb

    KritikCVSS 9,8İstismar yokEPSS %1

    ikus-soft · rdiffweb27 Ara 2022

  • CVE-2022-3363
    39İzleyin

    Business Logic Errors in ikus060/rdiffweb

    KritikCVSS 9,8İstismar yokEPSS %1

    ikus-soft · rdiffweb26 Eki 2022

  • CVE-2022-0935
    35İzleyin

    Host Header injection in password Reset in livehelperchat/livehelperchat

    YüksekCVSS 8,8İstismar yokEPSS %1

    livehelperchat · live helper chat7 Nis 2022

  • CVE-2019-3787
    35İzleyin

    UAA defaults email address to an insecure domain

    YüksekCVSS 8,8İstismar yokEPSS %1

    pivotal software · cloud foundry uaa-release19 Haz 2019

  • CVE-2025-2938
    35İzleyin

    Business Logic Errors in GitLab

    YüksekCVSS 8,8İstismar yokEPSS %0

    gitlab · gitlab26 Haz 2025

  • CVE-2023-6514
    35İzleyin

    The Bluetooth module of some Huawei Smart Screen products has an identity authentication bypass vulnerability.

    YüksekCVSS 8,8İstismar yokEPSS %0

    huawei · ajmd-370s firmware6 Ara 2023

  • CVE-2021-22926
    33İzleyin

    libcurl-using applications can ask for a specific client certificate to be used in a transfer.

    YüksekCVSS 7,5İstismar yokEPSS %10

    haxx · curl5 Ağu 2021

  • CVE-2026-1322
    32İzleyin

    Business Logic Errors in GitLab

    YüksekCVSS 8,1İstismar yokEPSS %0

    gitlab · gitlab14 May 2026

  • CVE-2022-27782
    31İzleyin

    libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.

    YüksekCVSS 7,5İstismar yokEPSS %3

    haxx · curl2 Haz 2022

  • CVE-2026-58558
    31İzleyin

    Permission control vulnerability in the file system.

    YüksekCVSS 7,8İstismar yokEPSS %0

    huawei · harmony os15 Tem 2026

  • CVE-2022-0524
    30İzleyin

    Business Logic Errors in publify/publify

    YüksekCVSS 7,5İstismar yokEPSS %2

    publify project · publify8 Şub 2022

  • CVE-2024-2267
    30İzleyin

    keerti1924 Online-Book-Store-Website shop.php logic error

    YüksekCVSS 7,5İstismar yokEPSS %1

    keerti1924 · online bookstore website7 Mar 2024

  • CVE-2025-1908
    30İzleyin

    Business Logic Errors in GitLab

    YüksekCVSS 7,7İstismar yokEPSS %0

    gitlab · gitlab24 Nis 2025

  • CVE-2024-45424
    30İzleyin

    Zoom Workplace Apps - Business Logic Error

    YüksekCVSS 7,5İstismar yokEPSS %0

    zoom · meeting software development kit25 Şub 2025

  • CVE-2024-51523
    30İzleyin

    Information management vulnerability in the Gallery module Impact: Successful exploitation of this vulnerability may affect service confiden

    YüksekCVSS 7,5İstismar yokEPSS %0

    huawei · harmonyos5 Kas 2024

  • CVE-2024-54098
    30İzleyin

    Service logic error vulnerability in the system service module Impact: Successful exploitation of this vulnerability may affect service inte

    YüksekCVSS 7,5İstismar yokEPSS %0

    huawei · emui12 Ara 2024

  • CVE-2024-56449
    30İzleyin

    Privilege escalation vulnerability in the Account module Impact: Successful exploitation of this vulnerability may affect service confidenti

    YüksekCVSS 7,5İstismar yokEPSS %0

    huawei · emui8 Oca 2025

  • CVE-2022-1155
    29İzleyin

    Old sessions are not blocked by the login enable function. in snipe/snipe-it

    YüksekCVSS 7,4İstismar yokEPSS %1

    snipeitapp · snipe-it30 Mar 2022

  • CVE-2023-6017
    28İzleyin

    H2O S3 Bucket Takeover

    YüksekCVSS 7,1İstismar yokEPSS %1

    h2o · h2o16 Kas 2023

  • CVE-2024-1456
    28İzleyin

    S3 Bucket Takeover in h2oai/h2o-3

    YüksekCVSS 7,1İstismar yokEPSS %0

    h2o · h2o15 Nis 2024

  • CVE-2025-54606
    28İzleyin

    Status verification vulnerability in the lock screen module.

    YüksekCVSS 7,1İstismar yokEPSS %0

    huawei · harmonyos5 Ağu 2025

  • CVE-2021-22922
    27İzleyin

    When curl is instructed to download content using the metalink feature, thecontents is verified against a hash provided in the metalink XML

    OrtaCVSS 6,5İstismar yokEPSS %4

    haxx · curl5 Ağu 2021

  • CVE-2021-36012
    27İzleyin

    Magento Commerce Gift Card Business Logic Error

    OrtaCVSS 6,5İstismar yokEPSS %2

    adobe · adobe commerce1 Eyl 2021

Tüm zafiyet sınıfları