Weaknesses of type CWE-20

4,586 results
CVE-2019-1597HIGHCisco FXOS and NX-OS Lightweight Directory Access Protocol Denial of Service VulnerabilitiesEPSS 2.5%CVE-2018-1104Ansible Tower through version 3.2.3 has a vulnerability that allows users only with access to define variables for a job template to executeEPSS 2.5%CVE-2019-1739HIGHCisco IOS and IOS XE Software Network-Based Application Recognition Denial of Service VulnerabilitiesEPSS 2.5%CVE-2019-1694HIGHCisco Adaptive Security Appliance Software and Cisco Firepower Threat Defense Software TCP Timer Handling Denial of Service VulnerabilityEPSS 2.5%CVE-2018-15460HIGHCisco Email Security Appliance URL Filtering Denial of Service VulnerabilityEPSS 2.5%CVE-2019-1752HIGHCisco IOS and IOS XE Software ISDN Interface Denial of Service VulnerabilityEPSS 2.5%CVE-2019-1751HIGHCisco IOS Software NAT64 Denial of Service VulnerabilityEPSS 2.5%CVE-2019-1738HIGHCisco IOS and IOS XE Software Network-Based Application Recognition Denial of Service VulnerabilityEPSS 2.5%CVE-2021-32566Specific sequence of HTTP/2 frames can cause ATS to crashEPSS 2.5%CVE-2023-36585HIGHWindows upnphost.dll Denial of Service VulnerabilityEPSS 2.5%CVE-2021-37148Request Smuggling - transfer encoding validationEPSS 2.5%CVE-2023-27043MEDIUMThe email module of Python through 3.11.3 incorrectly parses e-mail addresses that contain a special character. The wrong portion of an RFC2EPSS 2.5%CVE-2018-0416MEDIUMCisco Wireless LAN Controller Software Information Disclosure VulnerabilityEPSS 2.5%CVE-2021-37149Request Smuggling - multiple attacksEPSS 2.5%CVE-2017-3850A vulnerability in the Autonomic Networking Infrastructure (ANI) feature of Cisco IOS Software (15.4 through 15.6) and Cisco IOS XE SoftwareEPSS 2.5%CVE-2016-9578HIGHA vulnerability was discovered in SPICE before 0.13.90 in the server's protocol handling. An attacker able to connect to the SPICE server coEPSS 2.5%CVE-2019-10245In Eclipse OpenJ9 prior to the 0.14.0 release, the Java bytecode verifier incorrectly allows a method to execute past the end of bytecode arEPSS 2.5%CVE-2018-14663MEDIUMAn issue has been found in PowerDNS DNSDist before 1.3.3 allowing a remote attacker to craft a DNS query with trailing data such that the adEPSS 2.5%CVE-2021-36042CRITICALMagento Commerce API File Option Upload Extension Improper Input Validation Vulnerability Could Lead To Remote Code ExecutionEPSS 2.5%CVE-2018-4832A vulnerability has been identified in OpenPCS 7 V7.1 and earlier (All versions), OpenPCS 7 V8.0 (All versions), OpenPCS 7 V8.1 (All versionEPSS 2.5%