CWE-755

Medium likelihood

Improper Handling of Exceptional Conditions

Parent: CWE-703 - Improper Check or Handling of Exceptional Conditions

The product does not handle or incorrectly handles an exceptional condition.

572 vulnerabilities with CWE-755
CVE-2023-20993 HIGH
Android 11-13 - Local Privilege Escalation via Uncaught Exception in SnoozeHelper
CVSS 7.8
CVE-2023-28114 MEDIUM
cilium-cli < 0.13.2 - Permission Enforcement Removal via Incorrect Mount Point
CVSS 4.8
CVE-2023-27595 MEDIUM
Cilium 1.13.0 - Network Policy Bypass and Load Balancing Disruption during eBPF Program Attachment
CVSS 6.5
CVE-2023-26479 MEDIUM
XWiki Platform <6.0 - Info Disclosure
CVSS 6.5
CVE-2023-25561 MEDIUM
DataHub < 0.8.45 - Unauthenticated Authentication Bypass via JAAS Error Handling
CVSS 5.7
CVE-2023-22391 HIGH
Juniper Networks Junos OS ACX2K - DoS
CVSS 7.5
CVE-2022-48673 MEDIUM
Linux Kernel 4.11-5.19.8 - Use-After-Free in SMC Link Clear
CVSS 5.5
CVE-2022-48619 MEDIUM
Linux Kernel < 5.17.10 - Denial of Service via Input Event Code Bitmap Mishandling
CVSS 5.5
CVE-2022-27978 HIGH
Tooljet v1.6 - Arbitrary Password Reset via Missing Value Handling
CVSS 7.5
CVE-2022-23121 CRITICAL
netatalk < 3.1.13 - Unauthenticated Remote Code Execution via AppleDouble Entry Parsing
CVSS 9.8
CVE-2022-45155 MEDIUM
openSUSE Factory obs-service-go_modules < 0.6.1 - Arbitrary File and Directory Deletion
CVSS 5.5
CVE-2022-48329 CRITICAL
MISP < 2.4.166 - Improper Handling of Exceptional Conditions via Order Parameter
CVSS 9.8
CVE-2022-48328 CRITICAL
MISP < 2.4.167 - SQL Injection via IndexFilterComponent Parameter Handling
CVSS 9.8
CVE-2022-36287 MEDIUM
Intel Field Programmable Gate Array Crypto Service Server < 1.1.79.3 - Denial of Service via Uncaught Exception
CVSS 4.0
CVE-2022-29493 MEDIUM
Intel Baseboard Management Controller Firmware < 2.86 - Denial of Service via Uncaught Webserver Exception
CVSS 4.5
CVE-2022-34849 MEDIUM
Intel Iris Xe MAX Dedicated Graphics < 100.0.5.1436(v2) - Denial of Service via Uncaught Exception
CVSS 4.4
CVE-2022-26509 LOW
Intel SGX SDK < 2.16.100.1 - Information Disclosure via Improper Exception Handling
CVSS 2.5
CVE-2022-32655 MEDIUM
MediaTek Wi-Fi Driver - Local Privilege Escalation via Incorrect Error Handling
CVSS 6.7
CVE-2022-39380 MEDIUM
Wire web-app < 2022-11-02 - Denial of Service via Markdown Formatting
CVSS 5.3
CVE-2022-32659 MEDIUM
MediaTek Wi-Fi Driver - Local Privilege Escalation via Incorrect Error Handling
CVSS 6.7
CVE-2022-32658 MEDIUM
MediaTek Wi-Fi Driver - Local Privilege Escalation via Incorrect Error Handling
CVSS 6.7
CVE-2022-32657 MEDIUM
MediaTek Wi-Fi Driver - Local Privilege Escalation via Incorrect Error Handling
CVSS 6.7
CVE-2022-47933 MEDIUM
Brave < 1.42.51 - Denial of Service via IPFS Scheme Handling
CVSS 6.5
CVE-2022-46403 HIGH
Microchip RN4870 <1.43 - Buffer Overflow
CVSS 8.6
CVE-2022-20500 MEDIUM
Android - Denial of Service via ShortcutPackage.xml Exception Handling
CVSS 5.5
Details
Vulnerabilities 572
Exploit Likelihood Medium