CWE-754

Medium likelihood

Improper Check for Unusual or Exceptional Conditions

Parent: CWE-703 - Improper Check or Handling of Exceptional Conditions

The product does not check or incorrectly checks for unusual or exceptional conditions that are not expected to occur frequently during day to day operation of the product.

588 vulnerabilities with CWE-754
CVE-2023-21137 MEDIUM
Android 11-13 - Denial of Service in JobStore.java Job Map Parsing
CVSS 5.5
CVE-2023-34449 MEDIUM
ink! 4.0.0-4.2.0 - Incorrect Return Value Decoding in Delegate Call Mechanics
CVSS 5.3
CVE-2023-23602 MEDIUM
Firefox < 109 and Firefox ESR < 102.7 - Content Security Policy Bypass via WebSocket in WebWorker
CVSS 6.5
CVE-2023-32716 MEDIUM
Splunk Enterprise < 9.0.5, 8.2.11, 8.1.14 & Splunk Cloud < 9.0.2303.100 - DoS via {{dump}} SPL Command
CVSS 6.5
CVE-2023-32695 HIGH
socket.io-parser 3.4.0-3.4.2 and 4.0.4-4.2.2 - Denial of Service via Crafted Socket.IO Packet
CVSS 7.3
CVE-2023-21102 HIGH
Android Kernel - Local Privilege Escalation via Shadow Stack Protection Bypass
CVSS 7.8
CVE-2023-25620 MEDIUM
Schneider Electric Modicon M580 Firmware < 4.10 - Authenticated Denial of Service via Malicious Project File
CVSS 6.5
CVE-2023-25619 HIGH
Modicon M580 Firmware < 4.10 - Denial of Service via Modbus TCP Protocol
CVSS 7.5
CVE-2023-28979 MEDIUM
Juniper Networks Junos OS <19.3R3-S7, <19.4R3-S9, <20.2 - Improper ...
CVSS 4.7
CVE-2023-28976 HIGH
Juniper Junos OS on MX Series < 19.1R3-S10 - Unauthenticated Denial of Service via Packet Forwarding Engine Crash
CVSS 7.5
CVE-2023-28975 MEDIUM
Juniper Networks Junos OS <19.4R3-S10, <=20 - DoS
CVSS 4.6
CVE-2023-28974 HIGH
Juniper Junos Multiple Versions - Unauthenticated DoS via Malformed ICMP Packet
CVSS 7.4
CVE-2023-28965 MEDIUM
Juniper Junos OS DoS via Storm Control Feature
CVSS 6.5
CVE-2023-27772 HIGH
libiec61850 v1.5.1 - Denial of Service via ControlObjectClient_setOrigin()
CVSS 7.5
CVE-2023-30456 MEDIUM
Linux Kernel < 6.2.8 - Improper Check for Unusual or Exceptional Conditions in nVMX CR0 and CR4 Handling
CVSS 6.5
CVE-2023-23626 MEDIUM
go-bitfield < 1.1.0 - Denial of Service via Invalid Size Parameter in NewBitfield and FromBytes
CVSS 5.9
CVE-2023-23931 MEDIUM
cryptography 1.8-39.0.0 - Buffer Protocol Violation via Immutable Buffer Mutation
CVSS 4.8
CVE-2023-0572 MEDIUM
GitHub froxlor/froxlor <2.0.10 - Info Disclosure
CVSS 5.3
CVE-2023-22393 HIGH
Juniper Networks Junos OS/Junos OS Evolved - DoS
CVSS 7.5
CVE-2022-47112 LOW
7-Zip 22.01 - Improper Check for Unusual or Exceptional Conditions in xz File Handling
CVSS 2.5
CVE-2022-47111 LOW
7-Zip 22.01 - Improper Check for Unusual or Exceptional Conditions in xz File Handling
CVSS 2.5
CVE-2022-25024 HIGH
json2xml < 3.12.0 - Denial of Service via Typecode Decoding Error
CVSS 7.5
CVE-2022-3192 MEDIUM
ABB AC500 V2 PM5xx 2.0.0-2.8.6 - Client-Server Protocol Manipulation via Improper Input Validation
CVSS 5.3
CVE-2022-30692 MEDIUM
Intel System Usage Report < 2.4.8902 - Unauthenticated Denial of Service via Network Access
CVSS 5.9
CVE-2022-29523 LOW
Open CAS < 22.3.1 - Authenticated Denial of Service via Local Access
CVSS 3.3
Details
Vulnerabilities 588
Exploit Likelihood Medium