CWE-754

Medium likelihood

Improper Check for Unusual or Exceptional Conditions

Parent: CWE-703 - Improper Check or Handling of Exceptional Conditions

The product does not check or incorrectly checks for unusual or exceptional conditions that are not expected to occur frequently during day to day operation of the product.

605 vulnerabilities with CWE-754
CVE-2025-30655 MEDIUM
Juniper Junos OS and Junos OS Evolved - Denial of Service via 'show bgp neighbor' CLI Command
CVSS 5.5
CVE-2025-21597 MEDIUM
Juniper Junos OS and Junos OS Evolved - Unauthenticated Denial of Service via BGP Peer Flap Timing
CVSS 5.3
CVE-2025-21594 HIGH
Juniper Junos OS on MX Series - Denial of Service via Crafted IPv6 Traffic in DS-Lite NAT Scenario
CVSS 7.5
CVE-2025-3359 MEDIUM
GNUPlot - Memory Corruption
CVSS 6.2
CVE-2025-32051 MEDIUM
Red Hat Enterprise Linux - Denial of Service via Malformed Data URI in libsoup
CVSS 5.9
CVE-2025-2704 HIGH
OpenVPN 2.6.1-2.6.13 - Denial of Service via TLS-crypt-v2 Handshake Packet Replay
CVSS 7.5
CVE-2025-30258 LOW
GnuPG < 2.4.8 - Denial of Service via Crafted Subkey Certificate Import
CVSS 2.7
CVE-2025-0116 MEDIUM
PAN-OS 10.1.0-10.1.14-h11, 10.2.0-10.2.14, 11.1.0-11.1.8, 11.2.0-11.2.5 - DoS via Crafted LLDP Frame
CVE-2025-0112 MEDIUM
Palo Alto Networks Cortex XDR - Privilege Escalation
CVE-2025-0503 LOW
Mattermost <9.11.7 - Info Disclosure
CVSS 3.1
CVE-2025-20637 HIGH
MediaTek Software Development Kit < 7.6.7.0 - Remote Denial of Service via Uncaught Exception
CVSS 7.5
CVE-2025-24161 MEDIUM
iPadOS < 17.7.4 - Denial of Service via File Parsing
CVSS 5.5
CVE-2025-23197 MEDIUM
matrix-hookshot 5.4.1 and 6.0.1 - Denial of Service via GitHub Organization Handling
CVSS 6.5
CVE-2025-22445 LOW
Mattermost 10.x <= 10.2 - Incorrect Security Configuration Reporting in UI
CVSS 3.5
CVE-2024-26008 MEDIUM
Fortinet Fortios < 7.2.8 - Improper Condition Check
CVSS 5.3
CVE-2024-52504 HIGH
SIPROTEC 4 - Unauthenticated Denial of Service via File Transfer Interruption
CVSS 7.5
CVE-2024-28036 MEDIUM
Intel(R) Arc GPU - Authenticated Denial of Service via Local Access
CVSS 5.6
CVE-2024-12533 LOW
Phoenix SecureCore Technology Input Data Manipulation
CVSS 3.3
CVE-2024-10635 MEDIUM
Proofpoint Enterprise Protection - Unauthenticated Attachment Scanning Bypass via Malicious S/MIME Opaque Signature
CVSS 6.1
CVE-2024-54175 MEDIUM
IBM MQ 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD - Denial of Service
CVSS 5.5
CVE-2024-52895 MEDIUM
IBM i 7.4-7.5 - Database Access Denial of Service via Capabilities Restriction Bypass
CVSS 6.5
CVE-2024-45650 HIGH
IBM Security Verify Directory 10.0.0-10.0.3 - Denial of Service via LDAP Extended Operation
CVSS 7.5
CVE-2024-29980 LOW
Phoenix SecureCore - Input Data Manipulation
CVSS 2.3
CVE-2024-29979 LOW
Phoenix SecureCore - Input Data Manipulation
CVSS 2.3
CVE-2024-56778 MEDIUM
Linux Kernel - Null Pointer Dereference in sti_hqvdp_atomic_check
CVSS 5.5
Details
Vulnerabilities 605
Exploit Likelihood Medium