CWE-755

Medium likelihood

Improper Handling of Exceptional Conditions

Parent: CWE-703 - Improper Check or Handling of Exceptional Conditions

The product does not handle or incorrectly handles an exceptional condition.

572 vulnerabilities with CWE-755
CVE-2023-6599 MEDIUM
microweber/microweber <2.0 - Info Disclosure
CVSS 4.3
CVE-2023-42578 MEDIUM
Samsung Cloud < 5.2.00.7 - Unauthenticated Location Information Disclosure
CVSS 6.5
CVE-2023-42559 MEDIUM
Samsung Android Knox Guard < Dec-2023 Release 1 - Knox Guard Lock Bypass via System Time Change
CVSS 4.9
CVE-2023-46673 MEDIUM
Elasticsearch 7.0.0-7.17.14 - Denial of Service via Malformed Script in Ingest Pipeline
CVSS 6.5
CVE-2023-48232 LOW
Vim < 9.0.2107 - Denial of Service via Floating Point Exception in Smooth Scrolling
CVSS 3.9
CVE-2023-22292 HIGH
Intel Unison - Privilege Escalation
CVSS 7.3
CVE-2023-41378 HIGH
Calico Typha <3.26.2, Calico Enterprise Typha <3.17.1 - DoS
CVSS 7.5
CVE-2023-5090 MEDIUM
Linux KVM x2APIC MSR - Denial of Service
CVSS 6.0
CVE-2023-38406 CRITICAL
FRRouting < 8.4.3 - Denial of Service via Flowspec NLRI Length Zero
CVSS 9.8
CVE-2023-5824 HIGH
Squid < 6.4 - Denial of Service via Cached HTTP Response Header Retrieval
CVSS 7.5
CVE-2023-43087 MEDIUM
Dell PowerScale OneFS <9.5.0 - Info Disclosure
CVSS 4.3
CVE-2023-45820 MEDIUM
Directus 10.4.0-10.6.1 - Denial of Service via Invalid WebSocket Frame
CVSS 5.9
CVE-2023-43251 HIGH
XNSoft Nconvert 7.136 - Denial of Service via Crafted Image File
CVSS 7.8
CVE-2023-44186 HIGH
Junos OS and Junos OS Evolved - Denial of Service via BGP AS PATH Processing
CVSS 7.5
CVE-2023-41085 HIGH
F5 BIG-IP 13.1.0-13.1.5 - Denial of Service via IPSec Traffic
CVSS 7.5
CVE-2023-37605 MEDIUM
baramundi Enterprise Mobility Management < 23.1.50 - Denial of Service via Password Parameter Exception Handling
CVSS 5.5
CVE-2023-44488 HIGH
libvpx < 1.13.1 - Denial of Service via VP9 Width Handling
CVSS 7.5
CVE-2023-41332 LOW
Cilium < 1.12.14 and 1.14.0-1.14.2 - Denial of Service via Proxy Visibility Annotation
CVSS 3.5
CVE-2023-3280 MEDIUM
Palo Alto Networks Cortex XDR Agent 5.0-5.0.12.22203 7.9.0-7.9.3 7.9.0-7.9.101 - Local Protection Mechanism Bypass
CVSS 5.5
CVE-2023-27998 MEDIUM
FortiPresence 1.0-1.2.1 - Unauthenticated Sensitive Information Exposure via Missing Custom Error Page
CVSS 5.3
CVE-2023-20243 HIGH
Cisco Identity Services Engine - Denial of Service via RADIUS Accounting Request
CVSS 8.6
CVE-2023-41317 HIGH
Apollo Router 1.28.0-1.29.0 - Denial of Service via Anonymous GraphQL Subscription Operation
CVSS 7.5
CVE-2023-4540 HIGH
Daurnimator lua-http <ddab283 - DoS
CVSS 7.5
CVE-2023-31169 MEDIUM
Schweitzer Engineering Laboratories SEL-5030 - Info Disclosure
CVSS 4.8
CVE-2023-40184 LOW
xrdp < 0.9.23 - Session Restriction Bypass via auth_start_session Error Handling
CVSS 2.6
Details
Vulnerabilities 572
Exploit Likelihood Medium