CWE-754

Medium likelihood

Improper Check for Unusual or Exceptional Conditions

Parent: CWE-703 - Improper Check or Handling of Exceptional Conditions

The product does not check or incorrectly checks for unusual or exceptional conditions that are not expected to occur frequently during day to day operation of the product.

605 vulnerabilities with CWE-754
CVE-2020-15117 MEDIUM
Synergy < 1.12.0 - Denial of Service via Malformed kMsgHelloBack Packet
CVSS 6.5
CVE-2020-15566 MEDIUM
Xen 4.10.0-4.13.0 - Denial of Service via Event-Channel Port Allocation Error Handling
CVSS 6.5
CVE-2020-8334 MEDIUM
Lenovo ThinkPad - Privilege Escalation
CVSS 6.1
CVE-2020-13649 HIGH
JerryScript 2.2.0 - Denial of Service via Out-of-Memory Error Handling
CVSS 7.5
CVE-2020-7453 MEDIUM
FreeBSD Kernel Memory Disclosure via Jail osrelease Configuration
CVSS 6.0
CVE-2020-7800 HIGH
HUSKY RTU 6049-E70 <5.0 - Improper Check
CVSS 8.2
CVE-2020-8986 CRITICAL
ZendTo - Unauthenticated Administrative Access via Session Cookie Validation Flaw
CVSS 9.8
CVE-2020-7477 HIGH
Schneider Electric Quantum Ethernet Modules - Denial of Service via Modbus Command
CVSS 7.5
CVE-2020-7982 HIGH
OpenWrt 18.06.0-18.06.6, 19.07.0 & LEDE 17.01.0-17.01.7 - RCE via Opkg Checksum Bypass
CVSS 8.1
CVE-2020-10571 CRITICAL
psd-tools < 1.9.4 - Denial of Service via RLE Decoding
CVSS 9.8
CVE-2020-4217 HIGH
IBM Spectrum Scale 4.2.0.0-4.2.3.18 - Denial of Service via mmfsd/mmsdrserv Daemon Crash
CVSS 7.5
CVE-2020-6385 HIGH
Google Chrome <80.0.3987.87 - Auth Bypass
CVSS 8.8
CVE-2020-5215 MEDIUM
TensorFlow < 1.15.2 - Denial of Service via String to tf.float16 Conversion
CVSS 5.0
CVE-2019-20924 MEDIUM
MongoDB 4.2.0-4.2.1 - Denial of Service via IndexBoundsBuilder Invariant
CVSS 6.5
CVE-2019-8960 HIGH
FlexNet Publisher 11.16.2 - Denial of Service via Command Handling
CVSS 7.5
CVE-2019-15989 HIGH
Cisco IOS XR - Denial of Service via Malformed BGP Update Message
CVSS 8.6
CVE-2019-6857 HIGH
Modicon M580 < 2.80, M340 < 3.01, Quantum/TSX H/P 57 < 3.20 - Denial of Service via Modbus TCP Memory Block Read
CVSS 7.5
CVE-2019-6856 HIGH
Modicon M580, M340, Quantum, Premium < 2.80/3.01/3.20 - Denial of Service via Modbus TCP Memory Block Write
CVSS 7.5
CVE-2019-20175 HIGH
QEMU 2.4.0-4.2.0 - Denial of Service via SCSI_IOCTL_SEND_COMMAND
CVSS 7.5
CVE-2019-15695 HIGH
TigerVNC < 1.10.1 - Remote Code Execution via PixelFormat Buffer Overflow
CVSS 7.2
CVE-2019-14607 MEDIUM
Intel Processors - Privilege Escalation/DoS/Info Disclosure
CVSS 5.3
CVE-2019-11165 MEDIUM
Intel Field Programmable Gate Array S... - Improper Condition Check
CVSS 5.5
CVE-2019-19646 CRITICAL
SQLite < 3.30.1 - Denial of Service via Integrity Check PRAGMA with Generated Columns
CVSS 9.8
CVE-2019-14891 MEDIUM
cri-o < 1.16.1 - Denial of Service via Memory Cgroup OOM Condition
CVSS 5.0
CVE-2019-11139 MEDIUM
Debian Linux - Improper Condition Check
CVSS 6.0
Details
Vulnerabilities 605
Exploit Likelihood Medium