CWE-755

Medium likelihood

Improper Handling of Exceptional Conditions

Parent: CWE-703 - Improper Check or Handling of Exceptional Conditions

The product does not handle or incorrectly handles an exceptional condition.

572 vulnerabilities with CWE-755
CVE-2024-47609 MEDIUM
tonic 0.12.2 - Denial of Service via TCP/TLS Stream Accept Error
CVE-2024-6594 HIGH
WatchGuard Single Sign-On Client <12.7 - DoS
CVSS 7.5
CVE-2024-34639 MEDIUM
Samsung Android Setupwizard - Improper Handling of Exceptional Conditions
CVSS 4.6
CVE-2024-34638 MEDIUM
Samsung Android ThemeCenter - Arbitrary Application Deletion via Exception Handling
CVSS 6.7
CVE-2024-45038 HIGH
Meshtastic device firmware <2.4.1 - DoS
CVSS 7.5
CVE-2024-27442 HIGH
Zimbra Collaboration 9.0-10.0 - Privilege Escalation
CVSS 7.8
CVE-2024-0108 HIGH
NVIDIA Jetson Linux < 32.7.5 - Denial of Service and Privilege Escalation via NvGPU MMU Mapping Error Handling
CVSS 8.7
CVE-2024-7521 HIGH
Firefox < 129 and Firefox ESR < 115.14 - Use-After-Free via WebAssembly Exception Handling
CVSS 8.8
CVE-2024-39552 HIGH
Juniper Junos OS and Junos OS Evolved - Unauthenticated Denial of Service via Malformed BGP UPDATE Packet
CVSS 7.5
CVE-2024-39541 MEDIUM
Juniper Junos OS and Junos OS Evolved - Unauthenticated Denial-of-Service via Traffic Engineering Database Conflict
CVSS 6.5
CVE-2024-39560 MEDIUM
Juniper Junos OS and Junos OS Evolved - Denial of Service via RSVP Neighbor Error Handling
CVSS 6.5
CVE-2024-39555 HIGH
Juniper Junos OS and Junos OS Evolved - Denial of Service via Malformed BGP Update Message
CVSS 7.5
CVE-2024-39691 MEDIUM
matrix-appservice-irc < 2.0.1 - Information Disclosure via Homeserver Timestamp Manipulation
CVSS 4.3
CVE-2024-34750 HIGH
Apache Tomcat 9.0.0-9.0.89, 10.1.0-M1-10.1.24, 11.0.0-M1-11.0.0-M20 - Denial of Service via HTTP/2 Stream Miscount
CVSS 7.5
CVE-2024-20894 MEDIUM
Samsung Android Secure Folder - Authentication Bypass via Improper Exception Handling
CVSS 4.3
CVE-2024-3150 HIGH
mintplex-labs/anything-llm - Privilege Escalation
CVSS 8.8
CVE-2024-36730 HIGH
OneFlow v0.9.1 - Denial of Service via Negative Value in zeros/ones Parameter
CVSS 7.5
CVE-2024-3152 HIGH
mintplex-labs/anything-llm - Privilege Escalation, SSRF
CVSS 8.8
CVE-2024-36112 MEDIUM
Nautobot <1.6.22 & 2.0.0 - Info Disclosure
CVSS 6.3
CVE-2024-32652 HIGH
hono/node-server 1.3.0-1.10.1 - Denial of Service via Malformed Host Header
CVSS 7.5
CVE-2024-26911 LOW
Linux Kernel 6.7-6.7.5 - Denial of Service via DRM Buddy Alloc Range Error Handling
CVSS 3.3
CVE-2024-30380 MEDIUM
Juniper Junos OS and Junos OS Evolved - Unauthenticated Denial of Service via Malformed TLV in l2cpd
CVSS 6.5
CVE-2024-28869 HIGH
Traefik < 2.11.2 and 3.0.0-beta3-3.0.0-rc5 - Denial of Service via Content-Length Header
CVSS 7.5
CVE-2024-32000 MEDIUM
matrix-appservice-irc <2.0.0 - Info Disclosure
CVSS 4.3
CVE-2024-30382 HIGH
Juniper Junos OS and Junos OS Evolved - Unauthenticated Denial of Service via Routing Update Memory Corruption
CVSS 7.5
Details
Vulnerabilities 572
Exploit Likelihood Medium