Falhas do tipo CWE-20

4.586 resultados
CVE-2019-1691MEDIUMCisco Firepower Threat Defense Software SSL or TLS Denial of Service VulnerabilityEPSS 2.3%CVE-2020-8255A vulnerability in the Pulse Connect Secure < 9.1R9 admin web interface could allow an authenticated attacker to perform an arbitrary file rEPSS 2.3%CVE-2020-3127HIGHCisco Webex Network Recording Player and Cisco Webex Player Arbitrary Code Execution VulnerabilitiesEPSS 2.3%CVE-2024-5990HIGHThinManager® ThinServer™ Improper Input Validation VulnerabilityEPSS 2.3%CVE-2021-36032HIGHMagento Commerce Improper Input Validation Could Lead To Information Exposure and Privilege EscalationEPSS 2.2%CVE-2011-4124Input validation issues were found in Calibre at devices/linux_mount_helper.c which can lead to argument injection and elevation of privilegEPSS 2.2%CVE-2023-5043HIGHIngress nginx annotation injection causes arbitrary command executionEPSS 2.2%CVE-2019-1843HIGHCisco RV110W, RV130W, and RV215W Routers Management Interface Denial of Service VulnerabilityEPSS 2.2%CVE-2020-15098HIGHMissing Required Cryptographic Step Leading to Sensitive Information Disclosure in TYPO3 CMSEPSS 2.2%CVE-2024-3177LOWBypassing mountable secrets policy imposed by the ServiceAccount admission pluginEPSS 2.2%CVE-2021-21408HIGHAccess to restricted PHP code by dynamic static class access in smartyEPSS 2.2%CVE-2021-1404HIGHClam AntiVirus (ClamAV) Email Parser Denial of Service VulnerabilityEPSS 2.2%CVE-2019-1743HIGHCisco IOS XE Software Arbitrary File Upload VulnerabilityEPSS 2.2%CVE-2020-5243MEDIUMDenial of Service in uap-core when processing crafted User-Agent stringsEPSS 2.2%CVE-2017-12264A vulnerability in the Web Admin Interface of Cisco Meeting Server could allow an unauthenticated, remote attacker to cause a denial of servEPSS 2.2%CVE-2022-47937CRITICALMultiple parsing problems in the Apache Sling Commons JSON moduleEPSS 2.2%CVE-2019-1740HIGHCisco IOS and IOS XE Software Network-Based Application Recognition Denial of Service VulnerabilitiesEPSS 2.2%CVE-2023-2728MEDIUMBypassing enforce mountable secrets policy imposed by the ServiceAccount admission pluginEPSS 2.2%CVE-2020-8349CRITICALAn internal security review has identified an unauthenticated remote code execution vulnerability in Cloud Networking Operating System (CNOSEPSS 2.2%CVE-2023-28710HIGHApache Airflow Spark Provider Arbitrary File Read via JDBCEPSS 2.2%