Fallos del tipo CWE-20

4583 resultados
CVE-2016-7068MEDIUMAn issue has been found in PowerDNS before 3.4.11 and 4.0.2, and PowerDNS recursor before 3.7.4 and 4.0.4, allowing a remote, unauthenticateEPSS 7.3%CVE-2020-10885HIGHThis vulnerability allows remote attackers to execute arbitrary code on affected installations of TP-Link Archer A7 Firmware Ver: 190726 AC1EPSS 7.2%CVE-2018-0158HIGHA vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco IOS Software and Cisco IOS XE Software could allow an unautheEPSS 7.2%KEVCVE-2018-0253A vulnerability in the ACS Report component of Cisco Secure Access Control System (ACS) could allow an unauthenticated, remote attacker to eEPSS 7.1%CVE-2020-3383HIGHCisco Data Center Network Manager Path Traversal VulnerabilityEPSS 7.0%CVE-2024-38052HIGHKernel Streaming WOW Thunk Service Driver Elevation of Privilege VulnerabilityEPSS 7.0%CVE-2020-3280CRITICALCisco Unified Contact Center Express Remote Code Execution VulnerabilityEPSS 6.9%CVE-2017-12234HIGHMultiple vulnerabilities in the implementation of the Common Industrial Protocol (CIP) feature in Cisco IOS 12.4 through 15.6 could allow anEPSS 6.9%KEVCVE-2017-12233HIGHMultiple vulnerabilities in the implementation of the Common Industrial Protocol (CIP) feature in Cisco IOS 12.4 through 15.6 could allow anEPSS 6.9%KEVCVE-2017-12235HIGHA vulnerability in the implementation of the PROFINET Discovery and Configuration Protocol (PN-DCP) for Cisco IOS 12.2 through 15.6 could alEPSS 6.9%KEVCVE-2022-35666HIGHAdobe Acrobat Reader Improper Input Validation Remote Code Execution VulnerabilityEPSS 6.9%CVE-2020-1040CRITICALA remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticaEPSS 6.9%KEVCVE-2018-0159HIGHA vulnerability in the implementation of Internet Key Exchange Version 1 (IKEv1) functionality in Cisco IOS Software and Cisco IOS XE SoftwaEPSS 6.9%KEVCVE-2017-3792A vulnerability in a proprietary device driver in the kernel of Cisco TelePresence Multipoint Control Unit (MCU) Software could allow an unaEPSS 6.8%CVE-2023-28274HIGHWindows Win32k Elevation of Privilege VulnerabilityEPSS 6.8%CVE-2025-34102CRITICALCryptoLog Unauthenticated RCE via SQL Injection and Command InjectionEPSS 6.8%CVE-2021-41079Apache Tomcat DoS with unexpected TLS packetEPSS 6.7%CVE-2026-3288HIGHingress-nginx rewrite-target nginx configuration injectionEPSS 6.7%CVE-2024-26170HIGHWindows Composite Image File System (CimFS) Elevation of Privilege VulnerabilityEPSS 6.6%CVE-2021-25741HIGHSymlink Exchange Can Allow Host Filesystem AccessEPSS 6.5%