CWE-436

Interpretation Conflict

Parent: CWE-435 - Improper Interaction Between Multiple Correctly-Behaving Entities

Product A handles inputs or steps differently than Product B, which causes A to perform incorrect actions based on its perception of B's state.

95 vulnerabilities with CWE-436
CVE-2024-45097 MEDIUM
IBM Aspera Faspex <5.0.9 - Auth Bypass
CVSS 5.9
CVE-2024-42487 MEDIUM
Cilium <1.15.8-1.16.1 - Info Disclosure
CVSS 4.0
CVE-2024-38428 CRITICAL
GNU Wget <1.24.5 - Info Disclosure
CVSS 9.1
CVE-2024-20293 MEDIUM
Cisco ASA/FTD - Auth Bypass
CVSS 5.8
CVE-2024-34478 HIGH
btcd <0.24.0 - Info Disclosure
CVSS 7.5
CVE-2024-3386 MEDIUM
Palo Alto Networks PAN-OS - Info Disclosure
CVSS 5.3
CVE-2024-2004 LOW
Haxx Curl < 8.7.0 - Interpretation Conflict
CVSS 3.5
CVE-2024-29034 MEDIUM
Carrierwave < 2.2.6 - Interpretation Conflict
CVSS 6.8
CVE-2024-28054 HIGH
Amavis <2.12.3, 2.13.x <2.13.1 - Info Disclosure
CVSS 7.4
CVE-2024-24754 LOW
Bref - Info Disclosure
CVSS 3.7
CVE-2024-24753 MEDIUM
Bref - Info Disclosure
CVSS 4.8
CVE-2024-23644 MEDIUM
Trillium < 0.5.4 - Interpretation Conflict
CVSS 6.8
CVE-2023-52892 HIGH
Phpseclib < 1.0.22 - Interpretation Conflict
CVSS 7.5
CVE-2023-39481 HIGH
Softing Secure Integration Server < 1.30 - Interpretation Conflict
CVSS 8.8
CVE-2023-45715 LOW
Hcltech Bigfix Platform < 9.5.24 - Interpretation Conflict
CVSS 3.5
CVE-2023-50327 MEDIUM
IBM Powersc - Interpretation Conflict
CVSS 5.3
CVE-2023-48256 MEDIUM
Bosch Nexo-os < 1500-sp2 - Interpretation Conflict
CVSS 5.3
CVE-2023-49284 LOW
fish - Info Disclosure
CVSS 3.9
CVE-2023-40718 HIGH
Fortinet IPS Engine <7.321-6.158 - Evade IPS
CVSS 7.5
CVE-2023-29406 MEDIUM
GO < 1.19.11 - Interpretation Conflict
CVSS 6.5
CVE-2023-36456 HIGH
authentik <2023.4.3-2023.5.5 - SSRF
CVSS 8.3
CVE-2023-32708 HIGH
Splunk < 8.1.14 - Interpretation Conflict
CVSS 7.2
CVE-2023-30541 MEDIUM
Openzeppelin Contracts < 4.8.3 - Interpretation Conflict
CVSS 5.3
CVE-2023-30536 MEDIUM
Slimframework Slim Psr-7 < 1.6.1 - Interpretation Conflict
CVSS 6.5
CVE-2023-29197 MEDIUM
guzzlehttp/psr7 <1.9.1, <2.4.5 - XSS
CVSS 5.3
Details
Vulnerabilities 95