CWE-754

Medium likelihood

Improper Check for Unusual or Exceptional Conditions

Parent: CWE-703 - Improper Check or Handling of Exceptional Conditions

The product does not check or incorrectly checks for unusual or exceptional conditions that are not expected to occur frequently during day to day operation of the product.

588 vulnerabilities with CWE-754
CVE-2020-19766 HIGH
tokenerc20 - Access Control Bypass via Duration Variable Manipulation
CVSS 7.5
CVE-2020-12292 MEDIUM
Intel Thunderbolt Firmware - Authenticated Denial of Service via Improper Conditions Check
CVSS 5.5
CVE-2020-36382 HIGH
OpenVPN Access Server 2.7.3-2.8.7 - Denial of Service via Incorrect Authentication Token Data
CVSS 7.5
CVE-2020-24450 HIGH
Intel(R) Graphics Drivers <26.20.100.8141-15.45.32.5145-15.40.46.51...
CVSS 7.8
CVE-2020-27274 HIGH
Honeywell OPC UA Tunneller < 6.3.0.8233 - Denial of Service via Unchecked Malloc Return Value
CVSS 7.5
CVE-2020-35931 HIGH
Foxit Reader and PhantomPDF < 10.1.1 - Certified PDF Spoofing via Evil Annotation Attack
CVSS 7.8
CVE-2020-24677 HIGH
S+ Operations & S+ Historian - RCE/Priv Escalation
CVSS 8.8
CVE-2020-7549 MEDIUM
Modicon M340 and Legacy Modicon Firmware - Denial of Service via Crafted HTTP Requests
CVSS 5.3
CVE-2020-7543 HIGH
Modicon M580 and M340 Firmware < 3.20 - Denial of Service via Crafted Modbus Read Physical Memory Request
CVSS 7.5
CVE-2020-7542 HIGH
Modicon M580 and M340 Firmware < 3.20 - Denial of Service via Crafted Modbus Read Physical Memory Request
CVSS 7.5
CVE-2020-7539 HIGH
Modicon M340 BMXP34 Firmware < 3.30 - Denial of Service via HTTP Packet
CVSS 7.5
CVE-2020-7537 HIGH
Modicon M580 and M340 Firmware < 3.20 - Denial of Service via Crafted Modbus Read Physical Memory Request
CVSS 7.5
CVE-2020-7536 HIGH
Modicon M340 and BMXNOE/BMXNOR Firmware - Denial of Service via SNMP Network Parameter Modification
CVSS 7.5
CVE-2020-7538 HIGH
EcoStruxure Control Expert - Denial of Service via Modbus Request
CVSS 7.5
CVE-2020-8766 MEDIUM
Intel(R) SGX DCAP <1.6 - DoS
CVSS 6.5
CVE-2020-8738 MEDIUM
Intel BIOS < - Privilege Escalation
CVSS 6.7
CVE-2020-0588 MEDIUM
Intel BIOS - Privilege Escalation via Improper Conditions Check
CVSS 6.7
CVE-2020-0587 MEDIUM
Intel BIOS - Privilege Escalation via Improper Conditions Check
CVSS 6.7
CVE-2020-1999 MEDIUM
PAN-OS 7.1.0-7.1.25 - Threat Detection Evasion via Crafted TCP Packets
CVSS 5.3
CVE-2020-16125 HIGH
gnome_display_manager < 3.36.2 - Local Privilege Escalation via Unresponsive Accounts Daemon
CVSS 7.2
CVE-2020-28037 CRITICAL
WordPress < 5.5.2 - Remote Code Execution via Improper Installation Check
CVSS 9.8
CVE-2020-6107 MEDIUM
F2fs-Tools F2fs.Fsck <1.13 - Info Disclosure
CVSS 5.5
CVE-2020-15202 CRITICAL
Tensorflow <2.3.1 - Memory Corruption
CVSS 9.0
CVE-2020-3480 HIGH
Cisco IOS XE - Unauthenticated Denial of Service via Zone-Based Firewall Layer 4 Packet Handling
CVSS 8.6
CVE-2020-3421 HIGH
Cisco IOS XE - Unauthenticated Denial of Service via Zone-Based Firewall Layer 4 Packet Handling
CVSS 8.6
Details
Vulnerabilities 588
Exploit Likelihood Medium