CWE-754

Medium likelihood

Improper Check for Unusual or Exceptional Conditions

Parent: CWE-703 - Improper Check or Handling of Exceptional Conditions

The product does not check or incorrectly checks for unusual or exceptional conditions that are not expected to occur frequently during day to day operation of the product.

588 vulnerabilities with CWE-754
CVE-2024-22422 HIGH
AnythingLLM < 2024-01-18 - Unauthenticated Denial of Service via File Export Endpoint
CVSS 7.5
CVE-2024-21614 HIGH
Juniper Junos OS and Junos OS Evolved 22.2-22.3 - Unauthenticated Denial of Service via Dynamic Rendering Query
CVSS 7.5
CVE-2024-21603 MEDIUM
Juniper Junos OS - Denial of Service via SCU/DCU Statistics Collection
CVSS 6.5
CVE-2023-28910 HIGH
Volkswagen MIB3 infotainment system MIB3 OI MQB <0304 - Assertion Bypass via Disabled Abortion Flag in Bluetooth Stack
CVSS 8.0
CVE-2023-52710 HIGH
Huawei Matebook D16 BIOS v2.26 - Improper Check for Unusual or Exceptional Conditions in Communication Buffer
CVSS 7.8
CVE-2023-52678 MEDIUM
Linux Kernel - Denial of Service via Empty List Handling in kfd_topology.c
CVSS 5.5
CVE-2023-38420 LOW
Intel(R) Power Gadget - Info Disclosure
CVSS 3.8
CVE-2023-32871 MEDIUM
Yocto - Local Privilege Escalation via Incorrect Status Check
CVSS 5.3
CVE-2023-52534 MEDIUM
Android - Remote Denial of Service via ngmm Error Handling
CVSS 5.9
CVE-2023-45922 MEDIUM
Mesa 23.0.4 - Denial of Service via __glXGetDrawableAttribute()
CVSS 4.3
CVE-2023-52429 MEDIUM
Linux Kernel <= 6.7.4 - Denial of Service via Integer Overflow in dm_table_create
CVSS 5.5
CVE-2023-6874 HIGH
Silabs Gecko Software Development Kit < 4.4.0 - Denial of Service via NWK Sequence Number Manipulation
CVSS 7.5
CVE-2023-34348 HIGH
AVEVA PI Server 2023 and 2018 SP3 P05 and prior - Unauthenticated Denial of Service
CVSS 7.5
CVE-2023-6742 MEDIUM
Envira Gallery < 1.8.7.1 - Authenticated Unauthorized Data Modification via Improper Capability Check
CVSS 4.3
CVE-2023-52079 MEDIUM
msgpackr < 1.10.1 - Denial of Service via Crafted MessagePack Message
CVSS 6.8
CVE-2023-32726 LOW
Zabbix Agent 5.0.0-5.0.38 - Denial of Service via DNS Response Buffer Overflow
CVSS 3.9
CVE-2023-48431 MEDIUM
SINEC INS < V1.0 SP2 Update 2 - DoS
CVSS 6.8
CVE-2023-48429 LOW
SINEC INS < V1.0 SP2 Update 2 - Denial of Service via Web UI Parameter Length
CVSS 2.7
CVE-2023-49607 MEDIUM
Mattermost < 7.8.14 - Denial of Service via Reminder Parameter Type Mismatch
CVSS 4.3
CVE-2023-44099 HIGH
Huawei EMUI and HarmonyOS - WLAN Interruption via Kernel Module Data Verification Error
CVSS 7.5
CVE-2023-48698 MEDIUM
Eclipse ThreadX USBX < 6.3.0 - Expired Pointer Remote Code Execution
CVSS 6.8
CVE-2023-48696 MEDIUM
Eclipse ThreadX USBX < 6.3.0 - CDC ACM Remote Code Execution
CVSS 6.7
CVE-2023-49286 HIGH
squid < 6.4 - Denial of Service via Helper Process Management
CVSS 8.6
CVE-2023-39205 MEDIUM
Zoom Meetings < 5.16.0 - Authenticated Denial of Service via Team Chat
CVSS 4.3
CVE-2023-22290 MEDIUM
Intel Unison Software < 20.14.5683.0 - Authenticated Denial of Service via Network Access
CVSS 6.5
Details
Vulnerabilities 588
Exploit Likelihood Medium