CWE-755
Medium likelihoodImproper Handling of Exceptional Conditions
The product does not handle or incorrectly handles an exceptional condition.
572 vulnerabilities with CWE-755
CVE-2022-44652
HIGH
Trend Micro Apex One < 14.0.11789 - Local Privilege Escalation
CVSS 7.8
CVE-2022-23496
HIGH
Yet Another UserAgent Analyzer 7.0.0-7.8.9 - Denial of Service via Client Hints Analysis
CVSS 7.5
CVE-2022-23495
HIGH
go-merkledag 0.4.0-0.8.0 - Denial of Service via ProtoNode Encode Error Panic
CVSS 7.5
CVE-2022-39912
MEDIUM
Android < 13.0 - Improper Handling of Insufficient Permissions in PersonaManagerService
CVSS 6.2
CVE-2022-44030
HIGH
Redmine 5.0.0-5.0.3 - Unauthorized File Attachment Download
CVSS 7.5
CVE-2022-41917
MEDIUM
OpenSearch 1.0.0-1.3.6 - Information Disclosure via Text Analyzer File Handling
CVSS 4.3
CVE-2022-20854
HIGH
Cisco Firepower Management Center 6.1.0-6.1.0.6 - Unauthenticated Denial of Service via SSH Connection Handling
CVSS 7.5
CVE-2022-25917
MEDIUM
Intel M50CYP Family Firmware < 01.01.0005 - Denial of Service via Uncaught Exception
CVSS 6.0
CVE-2022-39886
MEDIUM
Android - Improper Access Control in IpcRxServiceModeBigDataInfo
CVSS 5.9
CVE-2022-39885
MEDIUM
Android DeviceManagement - Improper Access Control in BootCompletedReceiver_CMCC
CVSS 5.9
CVE-2022-20414
MEDIUM
Android - Denial of Service via AlarmManagerService Exception Handling
CVSS 5.5
CVE-2022-35268
HIGH
Robustel R1510 Firmware 3.1.16 and 3.3.0 - Denial of Service via Web Server hashFirst Functionality
CVSS 7.5
CVE-2022-3279
LOW
GitLab CE/EE <15.2.5-15.4.1 - Info Disclosure
CVSS 2.7
CVE-2022-39271
HIGH
Traefik < 2.8.8 - Denial of Service via HTTP/2 Connection Handling
CVSS 7.5
CVE-2022-33748
MEDIUM
Xen >= 4.0 - Denial of Service via Lock Order Inversion in Transitive Grant Copy Handling
CVSS 5.6
CVE-2022-20920
HIGH
Cisco IOS - Authenticated Denial of Service via SSH Request Handling
CVSS 7.7
CVE-2022-39872
MEDIUM
Samsung ShareLive < 13.2.03.5 - MAC Address Leak via Broadcast Intent
CVSS 5.9
CVE-2022-33887
HIGH
Autodesk AutoCAD 2023 - Code Injection
CVSS 7.8
CVE-2022-33886
HIGH
Autodesk AutoCAD <2024 - Buffer Overflow
CVSS 7.8
CVE-2022-20919
HIGH
Cisco IOS XE - Unauthenticated Denial of Service via Malformed CIP Packet
CVSS 8.6
CVE-2022-35295
MEDIUM
SAP Host Agent 7.22 - Privilege Escalation via SAPOSCOL File Handling
CVSS 4.9
CVE-2022-3175
MEDIUM
rdiffweb < 2.4.2 - Information Exposure via Missing Custom Error Page
CVSS 5.3
CVE-2022-36874
MEDIUM
Samsung Galaxy Watch Plugin < 2.2.11.22040751 - Unauthorized Device Information Disclosure
CVSS 5.9
CVE-2022-32264
HIGH
FreeBSD < 7.0 - Denial of Service via TSopt TCP Connection Handling
CVSS 7.5
CVE-2022-31152
MEDIUM
Synapse < 1.62.0 - Event Authorization Rule Bypass via Exceptional Condition Handling
CVSS 6.4
Details
Vulnerabilities
572
Exploit Likelihood
Medium