CWE-755

Medium likelihood

Improper Handling of Exceptional Conditions

Parent: CWE-703 - Improper Check or Handling of Exceptional Conditions

The product does not handle or incorrectly handles an exceptional condition.

583 vulnerabilities with CWE-755
CVE-2021-23886 MEDIUM
McAfee Data Loss Prevention Endpoint < 11.6.100.41 - Denial of Service via Process Suspension and Memory Modification
CVSS 5.5
CVE-2021-28876 MEDIUM
Rust < 1.52.0 - Memory Safety Violation via Zip Iterator Panic
CVSS 5.3
CVE-2021-25380 MEDIUM
Samsung Bixby < 3.0.53.02 - Unauthenticated Action Execution via Exception Handling
CVSS 5.8
CVE-2021-25365 MEDIUM
softsimd <SMR APR-2021 Release 1 - Info Disclosure
CVSS 5.9
CVE-2021-30046 MEDIUM
VIGRA Computer Vision Library <1.11.1 - DoS
CVSS 6.5
CVE-2021-28165 HIGH
Eclipse Jetty 7.2.2-9.4.38, 10.0.0.alpha0-10.0.1, 11.0.0.alpha0-11.0.1 - Denial of Service via Invalid TLS Frame
CVSS 7.5
CVE-2021-1356 MEDIUM
Cisco IOS XE - Authenticated Denial of Service via Web UI Error Handling
CVSS 4.3
CVE-2021-28971 MEDIUM
Linux Kernel < 5.11.8 - Denial of Service via PEBS Status Mishandling
CVSS 5.5
CVE-2021-28831 HIGH
BusyBox 1.32.0-1.32.1 - Denial of Service via Malformed Gzip Data
CVSS 7.5
CVE-2021-3127 HIGH
NATS Server 2.0.0-2.2.0 and JWT Library < 2.0.1 - Incorrect Access Control via Import Token Binding Mishandling
CVSS 7.5
CVE-2020-25691 HIGH
darkhttpd < 1.13-1 - Denial of Service via Large File Modification Date
CVSS 7.5
CVE-2020-19473 MEDIUM
PDF2JSON - Denial of Service via DCTStream::decodeImage Floating Point Exception
CVSS 5.5
CVE-2020-11243 HIGH
Qualcomm AQT1000 Firmware - Denial of Service via RRC Connection Establishment
CVSS 7.5
CVE-2020-25236 MEDIUM
Siemens LOGO! 8 BM Firmware - Denial of Service via Control Logic Manipulation
CVSS 5.5
CVE-2020-27543 HIGH
restify-paginate 0.0.5 - Denial of Service via Missing HTTP Host Header
CVSS 7.5
CVE-2020-26195 MEDIUM
Dell EMC PowerScale OneFS 8.1.2-9.1.0 - Unauthenticated Denial of Service via SMB Directory Auto-Create
CVSS 5.3
CVE-2020-13859 CRITICAL
Mofi Network MOFI4500-4GXeLTE 4.0.8-std - Unauthenticated Login via Forgotten-Password Feature Abuse
CVSS 9.8
CVE-2020-5807 HIGH
FactoryTalk Diagnostics <6.11 - Info Disclosure
CVSS 7.5
CVE-2020-5801 HIGH
FactoryTalk Linx - Process Termination
CVSS 7.5
CVE-2020-2505 LOW
QNAP QES < 2.1.1 - Information Disclosure via Error Message Generation
CVSS 2.3
CVE-2020-14270 MEDIUM
HCL Domino 9.0.0-10.0.0 - Unauthenticated Information Disclosure via XPages Error Handling
CVSS 5.3
CVE-2020-2020 MEDIUM
Cortex XDR Agent 5.0-5.0.9, 6.1-6.1.6, 7.0-7.0.2, 7.1-7.1.1 - DoS via Program Directory File Creation
CVSS 5.5
CVE-2020-29561 MEDIUM
SonicBOOM riscv-boom <3.0.0 - Use After Free
CVSS 5.5
CVE-2020-28896 MEDIUM
Mutt < 2.0.2 and NeoMutt < 2020-11-20 - Unencrypted Credential Exposure via Invalid IMAP Server Response
CVSS 5.3
CVE-2020-7926 MEDIUM
MongoDB 4.4.0 - Denial of Service via Crafted Query
CVSS 6.5
Details
Vulnerabilities 583
Exploit Likelihood Medium