CWE-843
Access of Resource Using Incompatible Type ('Type Confusion')
The product allocates or initializes a resource such as a pointer, object, or variable using one type, but it later accesses that resource using a type that is incompatible with the original type.
791 vulnerabilities with CWE-843
CVE-2017-14837
HIGH
Foxit Reader 8.3.1.21155 - Remote Code Execution via XFA Layout pageSpan Type Confusion
CVSS 8.8
CVE-2017-14835
HIGH
Foxit Reader 8.3.1.21155 - Remote Code Execution via XFA Layout Page Method Type Confusion
CVSS 8.8
CVE-2017-14830
HIGH
Foxit Reader 8.3.1.21155 - Remote Code Execution via XFAScriptObject setFocus Method
CVSS 8.8
CVE-2017-14829
HIGH
Foxit Reader 8.3.1.21155 - Remote Code Execution via XFAScriptObject openList Method
CVSS 8.8
CVE-2017-14828
HIGH
Foxit Reader 8.3.1.21155 - Remote Code Execution via XFA Layout w Method Type Confusion
CVSS 8.8
CVE-2017-14827
HIGH
Foxit Reader 8.3.1.21155 - Remote Code Execution via XFA Node Append Method
CVSS 8.8
CVE-2017-14826
HIGH
Foxit Reader 8.3.1.21155 - Remote Code Execution via XFA Node formNodes Method
CVSS 8.8
CVE-2017-14825
HIGH
Foxit Reader 8.3.1.21155 - Remote Code Execution via XFAScriptObject remove Method Type Confusion
CVSS 8.8
CVE-2017-14824
HIGH
Foxit Reader 8.3.1.21155 - Remote Code Execution via XFAScriptObject Insert Method
CVSS 8.8
CVE-2017-14823
HIGH
Foxit Reader 8.3.1.21155 - Remote Code Execution via XFA Signature Object Type Confusion
CVSS 8.8
CVE-2017-5116
HIGH
Google Chrome <61.0.3163.79-61.0.3163.81 - RCE
CVSS 8.8
CVE-2017-5108
HIGH
Google Chrome <60.0.3112.78 - Remote Code Execution
CVSS 8.8
CVE-2017-5094
MEDIUM
Google Chrome <60.0.3112.78 - RCE
CVSS 6.5
CVE-2017-5070
HIGH
KEV
Google Chrome <59.0.3071.86-59.0.3071.92 - RCE
CVSS 8.8
CVE-2017-5059
HIGH
Google Chrome <58.0.3029.81-58.0.3029.83 - RCE
CVSS 8.8
CVE-2017-5057
HIGH
Google Chrome <58.0.3029 - Info Disclosure
CVSS 8.8
CVE-2017-11292
HIGH
KEV
Adobe Flash Player <= 27.0.0.159 - Remote Code Execution via Bytecode Verification Flaw
CVSS 8.8
CVE-2017-14639
HIGH
Bento4 <1.5.0-617 - Buffer Overflow
CVSS 8.8
CVE-2017-8291
HIGH
KEV
Ghostscript Type Confusion Arbitrary Command Execution
CVSS 7.8
CVE-2017-0037
HIGH
KEV
Microsoft Edge and Internet Explorer 10-11 - Remote Code Execution via CSS Token Sequence Type Confusion
CVSS 8.1
CVE-2017-2995
HIGH
Adobe Flash Player < 24.0.0.194 - Remote Code Execution via MessageChannel Type Confusion
CVSS 8.8
CVE-2016-1000005
CRITICAL
HHVM <3.9.5, 3.10.0-3.12.3, 3.13.0-3.14.1 - Type Confusion
CVSS 9.8
CVE-2016-7201
HIGH
KEV
Microsoft Edge - Remote Code Execution via Chakra JavaScript Engine Type Confusion
CVSS 8.8
CVE-2016-6992
HIGH
Adobe Flash Player < 23.0.0.185 - Remote Code Execution via Type Confusion
CVSS 8.8
CVE-2016-4225
HIGH
Adobe Flash Player < 18.0.0.366, 19.x-22.x < 22.0.0.209, < 11.2.202.632 - Remote Code Execution via Type Confusion
CVSS 8.8
Details
Vulnerabilities
791