Fallos del tipo CWE-190

1287 resultados
CVE-2024-1916CRITICALInteger Overflow or Wraparound vulnerability in Mitsubishi Electric Corporation MELSEC-Q Series and MELSEC-L Series CPU modules allows a remEPSS 1.1%CVE-2020-27769In ImageMagick versions before 7.0.9-0, there are outside the range of representable values of type 'float' at MagickCore/quantize.c.EPSS 1.1%CVE-2023-32307HIGHheap-over-flow and integer-overflow in sofia-sipEPSS 1.1%CVE-2021-27431HIGHARM CMSIS RTOS2 Integer Overflow or WraparoundEPSS 1.0%CVE-2024-0803CRITICALInteger Overflow or Wraparound vulnerability in Mitsubishi Electric Corporation MELSEC-Q Series and MELSEC-L Series CPU modules allows a remEPSS 1.0%CVE-2025-46819MEDIUMRedis is vulnerable to DoS via specially crafted LUA scriptsEPSS 1.0%CVE-2023-41175MEDIUMLibtiff: potential integer overflow in raw2tiff.cEPSS 1.0%CVE-2026-32952MEDIUMgo-ntlmssp NTLM challenges can panic on malformed payloadsEPSS 1.0%CVE-2023-36576MEDIUMWindows Kernel Information Disclosure VulnerabilityEPSS 1.0%CVE-2022-1699CRITICALUncontrolled Resource Consumption in causefx/organizrEPSS 1.0%CVE-2023-34151A vulnerability was found in ImageMagick. This security flaw ouccers as an undefined behaviors of casting double to size_t in svg, mvg and oEPSS 1.0%CVE-2023-23405HIGHRemote Procedure Call Runtime Remote Code Execution VulnerabilityEPSS 1.0%CVE-2023-24908HIGHRemote Procedure Call Runtime Remote Code Execution VulnerabilityEPSS 1.0%CVE-2023-24869HIGHRemote Procedure Call Runtime Remote Code Execution VulnerabilityEPSS 1.0%CVE-2026-35092HIGHCorosync: corosync: denial of service via integer overflow in join message validationEPSS 1.0%CVE-2022-0961HIGHThe microweber application allows large characters to insert in the input field "post title" which can allow attackers to cause a Denial of Service (DoS) via a crafted HTTP request. in microweber/microweberEPSS 1.0%CVE-2023-36593HIGHMicrosoft Message Queuing (MSMQ) Remote Code Execution VulnerabilityEPSS 1.0%CVE-2022-1718HIGHThe trudesk application allows large characters to insert in the input field "Full Name" on the signup field which can allow attackers to cause a Denial of Service (DoS) via a crafted HTTP request in polonel/trudeskEPSS 1.0%CVE-2022-1754HIGHInteger Overflow or Wraparound in polonel/trudeskEPSS 1.0%CVE-2023-36582HIGHMicrosoft Message Queuing (MSMQ) Remote Code Execution VulnerabilityEPSS 1.0%