CWE-436
Interpretation Conflict
Product A handles inputs or steps differently than Product B, which causes A to perform incorrect actions based on its perception of B's state.
126 vulnerabilities with CWE-436
CVE-2021-45327
CRITICAL
Gitea < 1.11.2 - Remote Code Execution via HTTP Permission Method Trust
CVSS 9.8
CVE-2021-34699
HIGH
Cisco IOS - Authenticated Denial of Service via TrustSec CLI Parser
CVSS 7.7
CVE-2021-1587
HIGH
Cisco NX-OS - Denial of Service via TRILL OAM EtherType Packet Handling
CVSS 8.6
CVE-2021-39137
MEDIUM
go-ethereum 1.10.0-1.10.8 - Consensus Chain Split via Interpretation Conflict
CVSS 6.5
CVE-2021-28474
HIGH
Microsoft SharePoint Server - Remote Code Execution
CVSS 8.8
CVE-2021-21366
MEDIUM
xmldom < 0.5.0 - XML Processing Syntax Manipulation via Malicious Document Parsing
CVSS 4.3
CVE-2021-0207
HIGH
Juniper Junos OS - Denial of Service via Malformed Traffic Handling
CVSS 7.5
CVE-2020-3564
MEDIUM
Cisco ASA & FTD FTP Inspection Bypass via Flow Tracking
CVSS 5.3
CVE-2020-3200
HIGH
Cisco IOS - Authenticated Denial of Service via SSH Connection State Machine
CVSS 7.7
CVE-2020-10134
MEDIUM
Bluetooth Core < 5.2 - Unauthenticated Credential Acquisition via Pairing Method Confusion
CVSS 6.3
CVE-2020-10193
HIGH
ESET Cyber Security < 1294 - Virus Detection Bypass via Crafted RAR Compression Information
CVSS 7.5
CVE-2020-10180
CRITICAL
ESET Cyber Security < 1294 - Virus Detection Bypass via Crafted BZ2 Checksum
CVSS 9.8
CVE-2020-9399
MEDIUM
Avast Antivirus < 12.0 - Virus Detection Bypass via Crafted ZIP Archive
CVSS 5.5
CVE-2020-9363
HIGH
Sophos Cloud Optix < 2020-01-14 - Virus Detection Bypass via Crafted ZIP Archive
CVSS 7.8
CVE-2020-9362
HIGH
Quick Heal AntiVirus Products - Virus Detection Bypass via Malformed ZIP Archive GPFLAG
CVSS 7.8
CVE-2020-9342
MEDIUM
F-Secure Cloud Protection < 17.0.605.474 - Virus Detection Bypass via GZIP
CVSS 5.5
CVE-2020-9264
MEDIUM
ESET Cyber Security < 1296 - Virus Detection Bypass via ZIP Archive Compression Information Field
CVSS 5.5
CVE-2019-25101
MEDIUM
OnShift TurboGears 1.0.11.10 - HTTP Response Splitting
CVSS 6.3
CVE-2019-19089
MEDIUM
Hitachi Energy eSOMS 4.0-6.0.3 - Missing X-Content-Type-Options Header
CVSS 6.1
CVE-2019-18792
CRITICAL
Suricata 5.0.0 - TCP Signature Bypass via Overlapping FIN Packet
CVSS 9.1
CVE-2019-19589
CRITICAL
Lever PDF Embedder Plugin 4.4 - Info Disclosure
CVSS 9.8
CVE-2019-17596
HIGH
GO < 1.12.11 - Interpretation Conflict
CVSS 7.5
CVE-2019-0052
HIGH
Juniper Junos OS - Denial of Service via Fragmented HTTP Packet Misinterpretation
CVSS 7.5
CVE-2019-5892
MEDIUM
FRRouting 2.x-3.x < 3.0.4, 4.x < 4.0.1, 5.x < 5.0.2, 6.x < 6.0.2 - Denial of Service via BGP UPDATE Attribute 255
CVSS 6.5
CVE-2018-19966
HIGH
Xen 4.11.0-4.11.1 - Denial of Service or Privilege Escalation via Shadow Paging Union Data Structure
CVSS 8.8
Details
Vulnerabilities
126