Skip to main content

CWE archive

CWE-404 CVEs

Programmatic archive

747 CVEs tagged with CWE-4042 Critical, 181 High, 333 Medium, 231 Low, 0 Unrated.

CVE-2023-6180

Published Dec 5, 2023

The tokio-boring library in version 4.0.0 is affected by a memory leak issue that can lead to excessive resource consumption and potential DoS by resource exhaustion. The set_ex_d…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-34059

Published Oct 27, 2023

open-vm-tools contains a file descriptor hijack vulnerability in the vmware-user-suid-wrapper. A malicious actor with non-root privileges may be able to hijack the /dev/uinput fi…

CVSS 7.4 · High
Vendor/product tagsBeta · best-effort

CVE-2023-5459

Published Oct 9, 2023

A vulnerability has been found in Delta Electronics DVP32ES2 PLC 1.48 and classified as critical. This vulnerability affects unknown code of the component Password Transmission Ha…

CVSS 6.5 · Medium

CVE-2023-4882

Published Oct 3, 2023

DOS vulnerability that could allow an attacker to register a new VNF (Virtual Network Function) value. This action could trigger the args_assets() function defined in the arg-log.…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-5324

Published Oct 1, 2023

A vulnerability has been found in eeroOS up to 6.16.4-11 and classified as critical. This vulnerability affects unknown code of the component Ethernet Interface. The manipulation…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-5259

Published Sep 29, 2023

A vulnerability classified as problematic was found in ForU CMS. This vulnerability affects unknown code of the file /admin/cms_admin.php. The manipulation of the argument del lea…

CVSS 2.7 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-40546

Published Sep 5, 2023

Tenda AC6 US_AC6V4.0RTL_V02.03.01.26_cn.bin allows attackers (who have the administrator password) to cause a denial of service (device crash) via a long string in the wifiPwd_5G…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-20897

Published Sep 5, 2023

Salt masters prior to 3005.2 or 3006.2 contain a DOS in minion return. After receiving several bad packets on the request server equal to the number of worker threads, the master…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-3407

Published Sep 1, 2023

I some cases, when the device is USB-tethered to a host PC, and the device is sharing its mobile network connection with the host PC, if the user originates a call on the device,…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-20186

Published Aug 28, 2023

** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in nikooo777 ckSurf up to 1.19.2. It has been declared as problematic. This vulnerability affects the function SpecListMe…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2022-48500

Published Jun 19, 2023

Configuration defects in the secure OS module.Successful exploitation of this vulnerability will affect availability.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-48499

Published Jun 19, 2023

Configuration defects in the secure OS module.Successful exploitation of this vulnerability will affect availability.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-48489

Published Jun 19, 2023

Configuration defects in the secure OS module.Successful exploitation of this vulnerability will affect availability.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-31693

Published Jun 7, 2023

VMware Tools for Windows (12.x.y prior to 12.1.5, 11.x.y and 10.x.y) contains a denial-of-service vulnerability in the VM3DMP driver. A malicious actor with local user privileges…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-25087

Published Jun 6, 2023

A vulnerability classified as problematic was found in Arborator Server. This vulnerability affects the function start of the file project.cgi. The manipulation of the argument pr…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2023-29726

Published May 30, 2023

The Call Blocker application 6.6.3 for Android incorrectly opens a key component that an attacker can use to inject large amounts of dirty data into the application's database. Wh…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-2926

Published May 27, 2023

A vulnerability was found in SeaCMS 11.6 and classified as problematic. This issue affects some unknown processing of the file member.php of the component Picture Upload Handler.…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort
Showing 451-475 of 747 CVEsPage 19 of 30