CWE-228

Improper Handling of Syntactically Invalid Structure

Parent: CWE-703 - Improper Check or Handling of Exceptional Conditions

The product does not handle or incorrectly handles input that is not syntactically well-formed with respect to the associated specification.

16 vulnerabilities with CWE-228
CVE-2026-34232 HIGH
Firebird: DoS via `op_response` packet from client
CVSS 7.5
CVE-2026-20125 HIGH
Cisco Ios < 12.2(33)CY - Denial of Service
CVSS 7.7
CVE-2025-2529 LOW
Ehcache 3.x - Info Disclosure
CVSS 2.9
CVE-2025-47736 LOW
libsql-sqlite3-parser <14f422a - Info Disclosure
CVSS 2.9
CVE-2025-0343 HIGH
Swift ASN.1 - Info Disclosure
CVSS 7.5
CVE-2024-53828 MEDIUM
Ericsson Packet Core Controller (PCC) - Improper Handling of Syntactically Invalid Structure Vulnerability
CVSS 5.3
CVE-2024-55594 MEDIUM
Fortinet FortiWeb <7.4.6, <7.2.10, <7.0.10 - RCE
CVSS 5.6
CVE-2024-6382 MEDIUM
MongoDB Rust Driver <2.8.2 - Code Injection
CVSS 6.4
CVE-2024-22815 MEDIUM
Tormach xsTECH CNC Router, PathPilot Controller <2.9.6 - DoS
CVSS 5.3
CVE-2024-22809 MEDIUM
Tormach xsTECH CNC Router, PathPilot Controller <2.9.6 - Info Discl...
CVSS 6.5
CVE-2024-21612 HIGH
Juniper Junos OS Evolved < 21.2 - Denial of Service
CVSS 7.5
CVE-2023-42784 MEDIUM
Fortinet FortiWeb <7.4.6, <7.2.10, <7.0.10 - RCE
CVSS 5.6
CVE-2021-38443 MEDIUM
Eclipse CycloneDDS <0.8.0 - Info Disclosure
CVSS 6.6
CVE-2021-36199 MEDIUM
VideoEdge NVR - DoS
CVSS 5.3
CVE-2020-27847 CRITICAL
dex <2.27.0 - Auth Bypass
CVSS 9.8
CVE-2018-5381 MEDIUM
Quagga <1.2.3 - DoS
CVSS 6.5
Details
Vulnerabilities 16