CWE-755

Medium likelihood

Improper Handling of Exceptional Conditions

Parent: CWE-703 - Improper Check or Handling of Exceptional Conditions

The product does not handle or incorrectly handles an exceptional condition.

582 vulnerabilities with CWE-755
CVE-2023-37605 MEDIUM
baramundi Enterprise Mobility Management < 23.1.50 - Denial of Service via Password Parameter Exception Handling
CVSS 5.5
CVE-2023-44488 HIGH
libvpx < 1.13.1 - Denial of Service via VP9 Width Handling
CVSS 7.5
CVE-2023-41332 LOW
Cilium < 1.12.14 and 1.14.0-1.14.2 - Denial of Service via Proxy Visibility Annotation
CVSS 3.5
CVE-2023-3280 MEDIUM
Palo Alto Networks Cortex XDR Agent 5.0-5.0.12.22203 7.9.0-7.9.3 7.9.0-7.9.101 - Local Protection Mechanism Bypass
CVSS 5.5
CVE-2023-27998 MEDIUM
FortiPresence 1.0-1.2.1 - Unauthenticated Sensitive Information Exposure via Missing Custom Error Page
CVSS 5.3
CVE-2023-20243 HIGH
Cisco Identity Services Engine - Denial of Service via RADIUS Accounting Request
CVSS 8.6
CVE-2023-41317 HIGH
Apollo Router 1.28.0-1.29.0 - Denial of Service via Anonymous GraphQL Subscription Operation
CVSS 7.5
CVE-2023-4540 HIGH
Daurnimator lua-http <ddab283 - DoS
CVSS 7.5
CVE-2023-31169 MEDIUM
Schweitzer Engineering Laboratories SEL-5030 - Info Disclosure
CVSS 4.8
CVE-2023-40184 LOW
xrdp < 0.9.23 - Session Restriction Bypass via auth_start_session Error Handling
CVSS 2.6
CVE-2023-23774 HIGH
Motorola EBTS/MBTS Site Controller Firmware - Arbitrary Code Execution via Debug Prompt
CVSS 8.4
CVE-2023-39801 MEDIUM
Renault Easy Link Multimedia System Software 283C35519R - Denial of Service via Crafted WMA Files
CVSS 4.6
CVE-2023-28768 MEDIUM
Zyxel XGS2220-30, XMG1930-30, XS1930-10 <4.80 - DoS
CVSS 6.5
CVE-2023-39341 LOW
FFRI yarai 3.4.0-3.4.6 and 3.5.0 - Denial of Service via Exception Handling
CVSS 3.3
CVE-2023-21409 HIGH
AXIS License Plate Verifier < 2.8.3 - Unprivileged Credential Exposure via Insufficient File Permissions
CVSS 8.4
CVE-2023-21408 HIGH
AXIS License Plate Verifier < 2.8.3 - Unprivileged User Data Exposure via Insufficient File Permissions
CVSS 8.4
CVE-2023-33370 HIGH
Control ID IDSecure <4.7.26.0 - DoS
CVSS 7.5
CVE-2023-38419 MEDIUM
F5 BIG-IP Access Policy Manager 13.1.0-13.1.5 - Authenticated Denial of Service via iControl SOAP Request
CVSS 4.3
CVE-2023-3774 MEDIUM
Vault Enterprise - Denial of Service via Namespace Creation
CVSS 4.9
CVE-2023-36832 HIGH
Juniper Junos OS Multiple Versions - Unauthenticated DoS via AMS Interface Packets
CVSS 7.5
CVE-2023-1695 HIGH
Communication Framework - Info Disclosure
CVSS 7.5
CVE-2023-36933 HIGH
MOVEit Transfer <2021.0.9, 13.0.9 - Unhandled Exception
CVSS 7.5
CVE-2023-20692 HIGH
Yocto - Denial of Service via Uncaught Exception in WLAN Firmware
CVSS 7.5
CVE-2023-24510 HIGH
Arista EOS DHCP Relay - Denial of Service
CVSS 7.5
CVE-2023-1732 MEDIUM
cloudflare/circl < 1.3.3 - Predictable Shared Secret via Insufficient Randomness Check
CVSS 5.3
Details
Vulnerabilities 582
Exploit Likelihood Medium