CWE-754

Medium likelihood

Improper Check for Unusual or Exceptional Conditions

Parent: CWE-703 - Improper Check or Handling of Exceptional Conditions

The product does not check or incorrectly checks for unusual or exceptional conditions that are not expected to occur frequently during day to day operation of the product.

605 vulnerabilities with CWE-754
CVE-2020-7543 HIGH
Modicon M580 and M340 Firmware < 3.20 - Denial of Service via Crafted Modbus Read Physical Memory Request
CVSS 7.5
CVE-2020-7542 HIGH
Modicon M580 and M340 Firmware < 3.20 - Denial of Service via Crafted Modbus Read Physical Memory Request
CVSS 7.5
CVE-2020-7539 HIGH
Modicon M340 BMXP34 Firmware < 3.30 - Denial of Service via HTTP Packet
CVSS 7.5
CVE-2020-7537 HIGH
Modicon M580 and M340 Firmware < 3.20 - Denial of Service via Crafted Modbus Read Physical Memory Request
CVSS 7.5
CVE-2020-7536 HIGH
Modicon M340 and BMXNOE/BMXNOR Firmware - Denial of Service via SNMP Network Parameter Modification
CVSS 7.5
CVE-2020-7538 HIGH
EcoStruxure Control Expert - Denial of Service via Modbus Request
CVSS 7.5
CVE-2020-8766 MEDIUM
Intel(R) SGX DCAP <1.6 - DoS
CVSS 6.5
CVE-2020-8738 MEDIUM
Intel BIOS < - Privilege Escalation
CVSS 6.7
CVE-2020-0588 MEDIUM
Intel BIOS - Privilege Escalation via Improper Conditions Check
CVSS 6.7
CVE-2020-0587 MEDIUM
Intel BIOS - Privilege Escalation via Improper Conditions Check
CVSS 6.7
CVE-2020-1999 MEDIUM
PAN-OS 7.1.0-7.1.25 - Threat Detection Evasion via Crafted TCP Packets
CVSS 5.3
CVE-2020-16125 HIGH
gnome_display_manager < 3.36.2 - Local Privilege Escalation via Unresponsive Accounts Daemon
CVSS 7.2
CVE-2020-28037 CRITICAL
WordPress < 5.5.2 - Remote Code Execution via Improper Installation Check
CVSS 9.8
CVE-2020-6107 MEDIUM
F2fs-Tools F2fs.Fsck <1.13 - Info Disclosure
CVSS 5.5
CVE-2020-15202 CRITICAL
Tensorflow <2.3.1 - Memory Corruption
CVSS 9.0
CVE-2020-3480 HIGH
Cisco IOS XE - Unauthenticated Denial of Service via Zone-Based Firewall Layer 4 Packet Handling
CVSS 8.6
CVE-2020-3421 HIGH
Cisco IOS XE - Unauthenticated Denial of Service via Zone-Based Firewall Layer 4 Packet Handling
CVSS 8.6
CVE-2020-15223 HIGH
ORY Fosite <0.34.0 - Info Disclosure
CVSS 8.0
CVE-2020-14348 MEDIUM
AMQ Online < 1.5.2 - Denial of Service via Invalid AddressSpace Configuration Field
CVSS 4.3
CVE-2020-1122 MEDIUM
Windows 10 and Windows Server 2016/2019 - Elevation of Privilege via Language Pack Installer
CVSS 5.5
CVE-2020-5420 HIGH
Cloud Foundry Routing <0.206.0 - DoS
CVSS 7.7
CVE-2020-25056 HIGH
Android - Improper Version Check in NFC HAL
CVSS 7.5
CVE-2020-5925 HIGH
BIG-IP 11.6.1-15.1.0.4 DoS via TMM UDP Traffic Handling
CVSS 7.5
CVE-2020-3449 MEDIUM
Cisco IOS XR < 7.1.2 - Unauthenticated Denial of Service via BGP Additional Paths Feature
CVSS 4.3
CVE-2020-15658 MEDIUM
Firefox < 79.0 and Firefox ESR < 78.1 - File Extension Spoofing via Special Character Handling
CVSS 6.5
Details
Vulnerabilities 605
Exploit Likelihood Medium