VulnSea

CWE-755

CVEs classified under CWE-755, newest first.

36 CVEsRSS

CVE-2022-48329Critical· 9.8
3y ago

MISP before 2.4.166 unsafely allows users to use the order parameter, related to app/Model/Attribute.php, app/Model/GalaxyCluster.php, app/Model/Workflow.php, and app/Plugin/Assets/models/behaviors/LogableBehavior.php.

MISP before 2.4.166 unsafely allows users to use the order parameter, related to app/Model/Attribute.php, app/Model/GalaxyCluster.php, app/Model/Workflow.php, and app/Plugin/Assets/models/behaviors/LogableBehavior.php.

Midnightmisp-project · mispEPSS 0.94%via NVD
CVE-2022-48328Critical· 9.8
3y ago

app/Controller/Component/IndexFilterComponent.php in MISP before 2.4.167 mishandles ordered_url_params and additional_delimiters.

app/Controller/Component/IndexFilterComponent.php in MISP before 2.4.167 mishandles ordered_url_params and additional_delimiters.

Midnightmisp-project · mispEPSS 1.3%via NVD
CVE-2020-1071Medium· 6.8
6y ago

An elevation of privilege vulnerability exists when Windows improperly handles errors tied to Remote Access Common Dialog

An elevation of privilege vulnerability exists when Windows improperly handles errors tied to Remote Access Common Dialog. An attacker who successfully exploited the vulnerability could run arbitrary code with elevated privileges. To exp…

Sunlitmicrosoft · windows_10EPSS 1.0%via NVD
CVE-2020-5403High· 7.5
6y ago

Reactor Netty HttpServer, versions 0.9.3 and 0.9.4, is exposed to a URISyntaxException that causes the connection to be closed prematurely instead of producing a 400 response.

Reactor Netty HttpServer, versions 0.9.3 and 0.9.4, is exposed to a URISyntaxException that causes the connection to be closed prematurely instead of producing a 400 response.

Twilightbroadcom · reactor_nettyEPSS 1.1%via NVD
CVE-2019-1691Medium· 5.8
7y ago

A vulnerability in the detection engine of Cisco Firepower Threat Defense Software could allow an unauthenticated, remote attacker to cause the unexpected restart of the SNORT detection engine, resulting in a denial of service (DoS) cond…

A vulnerability in the detection engine of Cisco Firepower Threat Defense Software could allow an unauthenticated, remote attacker to cause the unexpected restart of the SNORT detection engine, resulting in a denial of service (DoS) cond…

Sunlitcisco · secure_firewall_threat_defenseEPSS 2.3%via NVD
CVE-2017-3887Medium· 5.9
9y ago

A vulnerability in the detection engine that handles Secure Sockets Layer (SSL) packets for Cisco Firepower System Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition because the Snort pr…

A vulnerability in the detection engine that handles Secure Sockets Layer (SSL) packets for Cisco Firepower System Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition because the Snort pr…

Sunlitcisco · secure_firewall_threat_defenseEPSS 1.3%via NVD
CWE-755 vulnerabilities (CVEs) — page 2 · VulnSea