CWE-755

Medium likelihood

Improper Handling of Exceptional Conditions

Parent: CWE-703 - Improper Check or Handling of Exceptional Conditions

The product does not handle or incorrectly handles an exceptional condition.

572 vulnerabilities with CWE-755
CVE-2022-44652 HIGH
Trend Micro Apex One < 14.0.11789 - Local Privilege Escalation
CVSS 7.8
CVE-2022-23496 HIGH
Yet Another UserAgent Analyzer 7.0.0-7.8.9 - Denial of Service via Client Hints Analysis
CVSS 7.5
CVE-2022-23495 HIGH
go-merkledag 0.4.0-0.8.0 - Denial of Service via ProtoNode Encode Error Panic
CVSS 7.5
CVE-2022-39912 MEDIUM
Android < 13.0 - Improper Handling of Insufficient Permissions in PersonaManagerService
CVSS 6.2
CVE-2022-44030 HIGH
Redmine 5.0.0-5.0.3 - Unauthorized File Attachment Download
CVSS 7.5
CVE-2022-41917 MEDIUM
OpenSearch 1.0.0-1.3.6 - Information Disclosure via Text Analyzer File Handling
CVSS 4.3
CVE-2022-20854 HIGH
Cisco Firepower Management Center 6.1.0-6.1.0.6 - Unauthenticated Denial of Service via SSH Connection Handling
CVSS 7.5
CVE-2022-25917 MEDIUM
Intel M50CYP Family Firmware < 01.01.0005 - Denial of Service via Uncaught Exception
CVSS 6.0
CVE-2022-39886 MEDIUM
Android - Improper Access Control in IpcRxServiceModeBigDataInfo
CVSS 5.9
CVE-2022-39885 MEDIUM
Android DeviceManagement - Improper Access Control in BootCompletedReceiver_CMCC
CVSS 5.9
CVE-2022-20414 MEDIUM
Android - Denial of Service via AlarmManagerService Exception Handling
CVSS 5.5
CVE-2022-35268 HIGH
Robustel R1510 Firmware 3.1.16 and 3.3.0 - Denial of Service via Web Server hashFirst Functionality
CVSS 7.5
CVE-2022-3279 LOW
GitLab CE/EE <15.2.5-15.4.1 - Info Disclosure
CVSS 2.7
CVE-2022-39271 HIGH
Traefik < 2.8.8 - Denial of Service via HTTP/2 Connection Handling
CVSS 7.5
CVE-2022-33748 MEDIUM
Xen >= 4.0 - Denial of Service via Lock Order Inversion in Transitive Grant Copy Handling
CVSS 5.6
CVE-2022-20920 HIGH
Cisco IOS - Authenticated Denial of Service via SSH Request Handling
CVSS 7.7
CVE-2022-39872 MEDIUM
Samsung ShareLive < 13.2.03.5 - MAC Address Leak via Broadcast Intent
CVSS 5.9
CVE-2022-33887 HIGH
Autodesk AutoCAD 2023 - Code Injection
CVSS 7.8
CVE-2022-33886 HIGH
Autodesk AutoCAD <2024 - Buffer Overflow
CVSS 7.8
CVE-2022-20919 HIGH
Cisco IOS XE - Unauthenticated Denial of Service via Malformed CIP Packet
CVSS 8.6
CVE-2022-35295 MEDIUM
SAP Host Agent 7.22 - Privilege Escalation via SAPOSCOL File Handling
CVSS 4.9
CVE-2022-3175 MEDIUM
rdiffweb < 2.4.2 - Information Exposure via Missing Custom Error Page
CVSS 5.3
CVE-2022-36874 MEDIUM
Samsung Galaxy Watch Plugin < 2.2.11.22040751 - Unauthorized Device Information Disclosure
CVSS 5.9
CVE-2022-32264 HIGH
FreeBSD < 7.0 - Denial of Service via TSopt TCP Connection Handling
CVSS 7.5
CVE-2022-31152 MEDIUM
Synapse < 1.62.0 - Event Authorization Rule Bypass via Exceptional Condition Handling
CVSS 6.4
Details
Vulnerabilities 572
Exploit Likelihood Medium