CWE-697

Incorrect Comparison

The product compares two entities in a security-relevant context, but the comparison is incorrect.

161 vulnerabilities with CWE-697
CVE-2021-0295 MEDIUM
Juniper Junos OS on QFX10K Series - Denial of Service via DVMRP Packet Forwarding Loop
CVSS 6.1
CVE-2021-27293 HIGH
RestSharp < 106.11.8-alpha.0.13 - DoS
CVSS 7.5
CVE-2021-35973 CRITICAL
NETGEAR WAC104 <1.0.4.15 - Auth Bypass
CVSS 9.8
CVE-2021-35970 HIGH
Coral Talk 4.0.0-4.12.0 - Unauthenticated Sensitive Information Exposure via GraphQL Permission Check Bypass
CVSS 7.5
CVE-2021-23999 HIGH
Firefox ESR <78.10, Thunderbird <78.10, Firefox <88 - Info Disclosure
CVSS 8.8
CVE-2021-20219 MEDIUM
Linux Kernel < 4.18 - Denial of Service via n_tty_receive_char_special
CVSS 5.5
CVE-2021-3116 HIGH
before_upstream_connection <2.3.1 - Info Disclosure
CVSS 7.5
CVE-2020-23478 HIGH
Leo Editor < 6.3 - Regular Expression Denial of Service in Dart Importer
CVSS 7.5
CVE-2020-1920 HIGH
React Native 0.59.0-0.64.0 - Regular Expression Denial of Service in validateBaseUrl
CVSS 7.5
CVE-2020-22784 HIGH
Etherpad UeberDB < 0.4.4 - Auth Bypass
CVSS 7.5
CVE-2020-25580 MEDIUM
FreeBSD Authentication Bypass via login.access Rule Processing Regression
CVSS 5.3
CVE-2020-23360 CRITICAL
oscommerce v2.3.4.1 - Info Disclosure
CVSS 9.8
CVE-2020-23359 CRITICAL
WeBid 1.2.2 - Incorrect Password Comparison in Admin User Registration
CVSS 9.8
CVE-2020-13559 HIGH
FreyrSCADA IEC-60879-5-104 Server Simulator 21.04.028 - Denial of Service via Traffic-Logging Packet Handling
CVSS 7.5
CVE-2020-25696 HIGH
PostgreSQL < 9.5.24 - Remote Code Execution via \gset in psql Interactive Terminal
CVSS 7.5
CVE-2020-15811 MEDIUM
Squid <4.13-5.0.4 - HTTP Request Splitting
CVSS 6.5
CVE-2020-15131 HIGH
SLP Validate <1.2.2 - Info Disclosure
CVSS 7.5
CVE-2020-15130 HIGH
slpjs < 0.27.4 - Incorrect NFT1 Child Genesis Transaction Validation
CVSS 7.5
CVE-2020-13485 CRITICAL
verbb knock_knock < 1.2.8 - IP Whitelist Bypass via X-Forwarded-For Header
CVSS 9.1
CVE-2020-11072 HIGH
SLP Validate <1.2.1 - Info Disclosure
CVSS 8.6
CVE-2020-11071 HIGH
slpjs < 0.27.2 - Incorrect Comparison in MINT Transaction Validation
CVSS 8.6
CVE-2020-10027 HIGH
Zephyrproject-RTOS >=1.14.0, >=2.1.0 - Privilege Escalation
CVSS 7.8
CVE-2020-10024 HIGH
Zephyr <2.1.0 - Privilege Escalation
CVSS 7.8
CVE-2020-1741 MEDIUM
OpenShift Container Platform 3.11 - CSRF
CVSS 5.9
CVE-2020-8864 HIGH
D-Link DIR-867,DIR-878,DIR-882 <1.10B04 - Auth Bypass
CVSS 8.8
Details
Vulnerabilities 161