CWE-404

Medium likelihood

Improper Resource Shutdown or Release

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product does not release or incorrectly releases a resource before it is made available for re-use.

723 vulnerabilities with CWE-404
CVE-2024-9787 MEDIUM
Contemporary Control System BASrouter BACnet BASRT-B 2.7.2 - Denial of Service via UDP Packet Handler
CVSS 5.3
CVE-2024-47972 MEDIUM
Solidigm DC Products - Info Disclosure
CVSS 4.0
CVE-2024-9399 HIGH
Firefox < 131 and ESR < 128.3 - Denial of Service via WebTransport Session
CVSS 7.5
CVE-2024-46752 MEDIUM
Linux Kernel < 5.15.167, 5.16.0-6.1.110, 6.2.0-6.6.51, 6.7.0-6.10.10 Btrfs DoS
CVSS 5.5
CVE-2024-45182 MEDIUM
WibuKey < 6.70 - Denial of Service via Arbitrary Address Read
CVSS 5.5
CVE-2024-7887 LOW
LimeSurvey 6.3.0-231016 - Denial of Service via File Upload Size Manipulation
CVSS 2.7
CVE-2024-25087 MEDIUM
Jungo WinDriver < 12.7.0 - Denial of Service via Blue Screen Error
CVSS 5.5
CVE-2024-22105 MEDIUM
Jungo WinDriver < 12.5.1 - Denial of Service via Blue Screen Error
CVSS 5.5
CVE-2024-38271 MEDIUM
Google Nearby < 1.0.1724.0 - Unauthenticated Man-in-the-Middle via WiFi Hotspot Persistence
CVSS 4.8
CVE-2024-36856 HIGH
RMQTT Broker 0.4.0 - Denial of Service via Session Resource Exhaustion
CVSS 7.5
CVE-2024-31611 CRITICAL
SeaCMS 12.9 - Arbitrary File Deletion via admin_template.php
CVSS 9.1
CVE-2024-4013 MEDIUM
Gecko SDK 3.1.0-2024.06.0 - Improper Resource Shutdown or Release in mesh_node_power_off
CVSS 5.6
CVE-2024-5095 MEDIUM
Victor Zsviot Camera 8.26.31 - Denial of Service in MQTT Packet Handler
CVSS 6.5
CVE-2024-4791 HIGH
BASrouter BACnet BASRT-B 2.7.2 - DoS
CVSS 7.5
CVE-2024-33844 HIGH
Parrot ANAFI USA Firmware 1.10.4 - Denial of Service via MAVLink MISSION_COUNT Command
CVSS 7.5
CVE-2024-4292 MEDIUM
Contemporary Controls BASrouter BACnet BASRT-B 2.7.2 - DoS
CVSS 6.5
CVE-2024-2760 MEDIUM
Bkav Home v7816 build 2403161130 - Memory Information Leak via BkavSDFlt.sys IOCTL 0x222240
CVSS 5.5
CVE-2024-21052 MEDIUM
MySQL Server <= 8.0.34 - Authenticated Denial of Service in DML Component
CVSS 4.9
CVE-2024-20995 LOW
Oracle Database Server 19.3-19.22 and 21.3-21.13 - Authenticated Partial Denial of Service in Sharding Component
CVSS 2.4
CVE-2024-3764 LOW
Tuya SDK < 5.1.0 - Denial of Service in MQTT Packet Handler
CVSS 2.7
CVE-2024-3652 MEDIUM
libreswan 3.22-4.15 - Denial of Service via IKEv1 Default Proposal Handler
CVSS 6.5
CVE-2024-26757 MEDIUM
Linux Kernel 4.8-6.7.7 - Improper Resource Shutdown in md_check_recovery
CVSS 5.5
CVE-2024-2995 MEDIUM
NUUO Camera < 20240319 - Denial of Service via deletefile.php Filename Parameter
CVSS 5.4
CVE-2024-22025 MEDIUM
Node.js - Denial of Service via Brotli Decoding in fetch()
CVSS 6.5
CVE-2024-28252 HIGH
CoreWCF 1.4.0-1.4.1 and 1.5.0-1.5.1 - Denial of Service via NetFraming Connection Handling
CVSS 7.5
Details
Vulnerabilities 723
Exploit Likelihood Medium