CWE-697

Incorrect Comparison

The product compares two entities in a security-relevant context, but the comparison is incorrect.

144 vulnerabilities with CWE-697
CVE-2024-39742 HIGH
IBM MQ Operator - Auth Bypass
CVSS 8.1
CVE-2024-38522 MEDIUM
Hush Line <0.1.0 - Auth Bypass
CVSS 6.3
CVE-2024-4032 HIGH
ipaddress - Info Disclosure
CVSS 7.5
CVE-2024-34340 CRITICAL
Cacti <1.2.27 - Info Disclosure
CVSS 9.1
CVE-2024-2223 HIGH
Bitdefender - SSRF
CVSS 8.1
CVE-2024-28246 MEDIUM
KaTeX - Code Injection
CVSS 5.5
CVE-2024-29026 HIGH
Owncast < 0.1.2 - CSRF
CVSS 8.2
CVE-2024-23903 MEDIUM
Jenkins GitLab Branch Source Plugin <684 - Info Disclosure
CVSS 5.3
CVE-2023-45213 MEDIUM
Westermo L206-f2g Firmware - Permissive CORS Policy
CVSS 6.6
CVE-2023-50940 MEDIUM
IBM Powersc - Permissive CORS Policy
CVSS 5.3
CVE-2023-49994 MEDIUM
Espeak-ng <1.52-dev - Memory Corruption
CVSS 5.5
CVE-2023-46660 MEDIUM
Jenkins Zanata Plugin <0.6 - Info Disclosure
CVSS 5.3
CVE-2023-46658 MEDIUM
Jenkins MSTeams Webhook Trigger Plugin <0.1.1 - Info Disclosure
CVSS 5.3
CVE-2023-46657 MEDIUM
Jenkins Gogs Plugin <1.0.15 - Info Disclosure
CVSS 5.3
CVE-2023-46656 MEDIUM
Jenkins Multibranch Scan Webhook Trigger Plugin <1.0.9 - Info Discl...
CVSS 5.3
CVE-2023-46009 HIGH
gifsicle-1.94 - Memory Corruption
CVSS 7.8
CVE-2023-45133 CRITICAL
Babel <7.23.2, 8.0.0-alpha.4 - RCE
CVSS 9.3
CVE-2023-44378 HIGH
Consensys Gnark < 0.9.0 - Integer Underflow
CVSS 7.1
CVE-2023-23766 MEDIUM
GitHub Enterprise Server - Info Disclosure
CVSS 4.5
CVE-2023-23845 MEDIUM
SolarWinds Platform - Privilege Escalation
CVSS 6.8
CVE-2023-23840 MEDIUM
SolarWinds Platform - Privilege Escalation
CVSS 6.8
CVE-2023-40271 HIGH
Trusted Firmware-M < TF-Mv1.8.0 - Buffer Overflow
CVSS 7.5
CVE-2023-41936 HIGH
Jenkins Google Login Plugin <1.7 - Info Disclosure
CVSS 7.5
CVE-2023-41935 HIGH
Jenkins Azure AD < 348.vefd011eea_20b - CSRF
CVSS 7.5
CVE-2023-23765 MEDIUM
GitHub Enterprise Server - Info Disclosure
CVSS 4.8
Details
Vulnerabilities 144