Falhas do tipo CWE-20

4.585 resultados
CVE-2024-21312HIGH.NET Framework Denial of Service VulnerabilityEPSS 3.6%CVE-2023-5528HIGHKubernetes - Windows nodes - Insufficient input sanitization in in-tree storage plugin leads to privilege escalationEPSS 3.6%CVE-2024-38021HIGHMicrosoft Outlook Remote Code Execution VulnerabilityEPSS 3.5%CVE-2023-35368HIGHMicrosoft Exchange Remote Code Execution VulnerabilityEPSS 3.5%CVE-2025-24513MEDIUMingress-nginx controller - auth secret file path traversal vulnerabilityEPSS 3.5%CVE-2018-0409A vulnerability in the XCP Router service of the Cisco Unified Communications Manager IM & Presence Service (CUCM IM&P) and the Cisco TelePrEPSS 3.5%CVE-2019-1650HIGHCisco SD-WAN Solution Arbitrary File Overwrite VulnerabilityEPSS 3.5%CVE-2018-8867In GE PACSystems RX3i CPE305/310 version 9.20 and prior, RX3i CPE330 version 9.21 and prior, RX3i CPE 400 version 9.30 and prior, PACSystemsEPSS 3.5%CVE-2019-1754HIGHCisco IOS XE Software Privilege Escalation VulnerabilityEPSS 3.5%CVE-2020-14503Advantech iView, versions 5.6 and prior, has an improper input validation vulnerability. Successful exploitation of this vulnerability couldEPSS 3.5%CVE-2019-1755MEDIUMCisco IOS XE Software Command Injection VulnerabilityEPSS 3.5%CVE-2019-1894HIGHCisco Enterprise NFV Infrastructure Software Arbitrary File Read and Write VulnerabilityEPSS 3.5%CVE-2018-0239A vulnerability in the egress packet processing functionality of the Cisco StarOS operating system for Cisco Aggregation Services Router (ASEPSS 3.4%CVE-2014-2360OleumTech WIO Family Improper Input ValidationEPSS 3.4%CVE-2024-20733MEDIUM[ZS-VR-23-360] Adobe Acrobat Reader Parsing OTF font Denial-of-Service VulnerabilityEPSS 3.4%CVE-2023-3955HIGHKubernetes - Windows nodes - Insufficient input sanitization leads to privilege escalationEPSS 3.4%CVE-2018-0280A vulnerability in the Real-Time Transport Protocol (RTP) bitstream processing of the Cisco Meeting Server could allow an unauthenticated, rEPSS 3.4%CVE-2018-0325A vulnerability in the Session Initiation Protocol (SIP) call-handling functionality of Cisco IP Phone 7800 Series phones and Cisco IP PhoneEPSS 3.4%CVE-2020-3341HIGHClamAV PDF Parsing Denial of Service VulnerabilityEPSS 3.4%CVE-2021-35247MEDIUMImproper Input Validation Vulnerability in Serv-UEPSS 3.4%KEV