Skip to main content

CWE archive

CWE-229 CVEs

Programmatic archive

18 CVEs tagged with CWE-2292 Critical, 8 High, 7 Medium, 1 Low, 0 Unrated.

CVE-2025-59032

Published Mar 27, 2026

ManageSieve AUTHENTICATE command crashes when using literal as SASL initial response. This can be used to crash ManageSieve service repeatedly, making it unavailable for other use…

CVSS 7.5 · High
evidence mentions
18
Buzz score
42.4
Vendor/product tagsBeta · best-effort

CVE-2026-4736

Published Mar 24, 2026

Improper Handling of Values vulnerability in No-Chicken Echo-Mate (SDK/rv1106-sdk/sysdrv/source/kernel/include/net/netfilter modules). This vulnerability is associated with progra…

CVSS 7.3 · High
evidence mentions
1
Buzz score
11.9

CVE-2025-31648

Published Feb 10, 2026

Improper handling of values in the microcode flow for some Intel(R) Processor Family may allow an escalation of privilege. Startup code and smm adversary with a privileged user co…

CVSS 1.8 · Low

CVE-2025-7964

Published Jan 30, 2026

After receiving a malformed 802.15.4 MAC Data Request the Zigbee Coordinator sends a ‘network leave’ request to Zigbee router resulting in the Zigbee Router getting stuck in a…

CVSS 9.2 · Critical

CVE-2025-20268

Published Aug 14, 2025

A vulnerability in the Geolocation-Based Remote Access (RA) VPN feature of Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to b…

CVSS 5.8 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2024-20431

Published Oct 23, 2024

A vulnerability in the geolocation access control feature of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass an access cont…

CVSS 5.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-36737

Published Jun 6, 2024

Improper input validation in OneFlow-Inc. Oneflow v0.9.1 allows attackers to cause a Denial of Service (DoS) via inputting a negative value into the oneflow.full parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-30917

Published Apr 11, 2024

An issue was discovered in eProsima FastDDS v.2.14.0 and before, allows a local attacker to cause a denial of service (DoS) and obtain sensitive information via a crafted history_…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-29460

Published Apr 10, 2024

An issue in PX4 Autopilot v.1.14.0 allows an attacker to manipulate the flight path allowing for crashes of the drone via the home point location of the mission_block.cpp componen…

CVSS 6.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-4851

Published Dec 29, 2022

Improper Handling of Values in GitHub repository usememos/memos prior to 0.9.1.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-3409

Published Oct 27, 2022

A vulnerability in bmcweb of OpenBMC Project allows user to cause denial of service. This vulnerability was identified during mitigation for CVE-2022-2809. When fuzzing the multip…

CVSS 8.2 · High
Vendor/product tagsBeta · best-effort

CVE-2022-2809

Published Oct 27, 2022

A vulnerability in bmcweb of OpenBMC Project allows user to cause denial of service. When fuzzing the multipart_parser code using AFL++ with address sanitizer enabled to find smal…

CVSS 8.2 · High
Vendor/product tagsBeta · best-effort

CVE-2022-24412

Published Apr 12, 2022

Dell EMC PowerScale OneFS 8.2.x - 9.3.0.x contain an improper handling of value vulnerability. An unprivileged network attacker could potentially exploit this vulnerability, leadi…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-22562

Published Apr 12, 2022

Dell PowerScale OneFS, versions 8.2.0-9.3.0, contain a improper handling of missing values exploit. An unauthenticated network attacker could potentially exploit this denial-of-se…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-18 of 18 CVEsPage 1 of 1