CWE-755
578 CVEs • Abstraction: Class • Likelihood of Exploit: Medium
Improper Handling of Exceptional Conditions
The product does not handle or incorrectly handles an exceptional condition.
CVEs (578)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
mwlib 0.13 through 0.13.4 has a denial of service vulnerability when parsing #iferror magic functions |
3Ceph FedoraprojectRedhat3Ceph Ceph StorageFedoraJun 17, 2026 Nov 8, 2019 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A flaw was found in the Ceph RGW configuration with Beast as the front end handling client requests. An unauthenticated attacker could crash the Ceph RGW server by sending valid HTTP headers and terminating the connectio...Show more |
An issue exists in WebKit in Google Chrome before Blink M12. when clearing lists in AnimationControllerPrivate that signal when a hardware animation starts. |
Incorrect handling of timer information in Timer.cpp in WebKit in Google Chrome before Blink M13. |
2Debian Simplesamlphp2Debian Linux SimplesamlphpNov 21, 2024 Nov 6, 2019 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 simplesamlphp before 1.6.3 (squeeze) and before 1.8.2 (sid) incorrectly handles XML encryption which could allow remote attackers to decrypt or forge messages. |
1Wpwham 1Currency Switcher For Woocommerce Jun 17, 2026 Nov 2, 2019 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 An issue was discovered in the Currency Switcher addon before 2.11.2 for WooCommerce if a user provides a currency that was not added by the administrator. In this case, even though the currency does not exist, it will b...Show more |
2Burn Project Debian2Burn Debian LinuxNov 21, 2024 Oct 31, 2019 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 burn allows file names to escape via mishandled quotation marks |
1Schneider Electric 3Modicon Bmenoc 0311 Firmware Modicon Bmenoc 0321 FirmwareModicon M580 FirmwareJun 17, 2026 Oct 29, 2019 N/A· v4 8.6 HIGH· v3 5.0 MEDIUM· v2 A CWE-755: Improper Handling of Exceptional Conditions vulnerability exists in Modicon M580 CPU (BMEx58*) and Modicon M580 communication module (BMENOC0311, BMENOC0321) (see notification for version info), which could ca...Show more |
1Schneider Electric 4Modicon 140cra Firmware Modicon Bmxcra FirmwareModicon M340 Firmware+1 moreJun 17, 2026 Oct 29, 2019 N/A· v4 4.9 MEDIUM· v3 4.0 MEDIUM· v2 A CWE-755: Improper Handling of Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Modicon BMxCRA and 140CRA modules (all firmware versions), which could cause a Denial of Service attack on the FT...Show more |
1Schneider Electric 4Modicon 140cra Firmware Modicon Bmxcra FirmwareModicon M340 Firmware+1 moreJun 17, 2026 Oct 29, 2019 N/A· v4 4.9 MEDIUM· v3 4.0 MEDIUM· v2 A CWE-755: Improper Handling of Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Modicon BMxCRA and 140CRA modules (all firmware versions), which could cause a Denial of Service atack on the PLC...Show more |
1Schneider Electric 4Modicon 140cra Firmware Modicon Bmxcra FirmwareModicon M340 Firmware+1 moreJun 17, 2026 Oct 29, 2019 N/A· v4 4.9 MEDIUM· v3 4.0 MEDIUM· v2 A CWE-755: Improper Handling of Exceptional Conditions vulnerability exists in Modicon M580 with firmware (version prior to V3.10), Modicon M340 (all firmware versions), and Modicon BMxCRA and 140CRA modules (all firmwar...Show more |
1Schneider Electric 4Modicon 140cra Firmware Modicon Bmxcra FirmwareModicon M340 Firmware+1 moreJun 17, 2026 Oct 29, 2019 N/A· v4 4.9 MEDIUM· v3 4.0 MEDIUM· v2 A CWE-755: Improper Handling of Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Modicon BMxCRA and 140CRA modules (all firmware versions), which could cause a Denial of Service attack on the PL...Show more |
1Schneider Electric 4Modicon 140cra Firmware Modicon Bmxcra FirmwareModicon M340 Firmware+1 moreJun 17, 2026 Oct 29, 2019 N/A· v4 4.9 MEDIUM· v3 4.0 MEDIUM· v2 A CWE-755: Improper Handling of Exceptional Conditions vulnerability exists in Modicon M580 with firmware (version prior to V3.10), Modicon M340 (all firmware versions), and Modicon BMxCRA and 140CRA modules (all firmwar...Show more |
7Canonical DebianFedoraproject+4 more15Debian Linux Element Software Management NodeEnterprise Linux+12 moreJun 17, 2026 Oct 17, 2019 N/A· v4 8.8 HIGH· v3 9.0 HIGH· v2 In Sudo before 1.8.28, an attacker with access to a Runas ALL sudoer account can bypass certain policy blacklists and session PAM modules, and can cause incorrect logging, by invoking sudo with a crafted user ID. For exa...Show more |
3Apache Connect2idOracle15Communications Cloud Native Core Security Edge Protection Proxy Communications Pricing Design CenterData Integrator+12 moreJun 17, 2026 Oct 15, 2019 N/A· v4 9.8 CRITICAL· v3 6.8 MEDIUM· v2 Connect2id Nimbus JOSE+JWT before v7.9 can throw various uncaught exceptions while parsing a JWT, which could result in an application crash (potential information disclosure) or a potential authentication bypass. |
1Microsoft 1Sql Server Management Studio Jun 17, 2026 Oct 10, 2019 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 An information disclosure vulnerability exists in Microsoft SQL Server Management Studio (SSMS) when it improperly enforces permissions, aka 'SQL Server Management Studio Information Disclosure Vulnerability'. This CVE I...Show more |
1Microsoft 8Windows 10 Windows 7Windows 8.1+5 moreJun 17, 2026 Oct 10, 2019 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handles a process crash, aka 'Windows Error Reporting Manager Elevation of Privilege Vulnerability'. This CVE ID is unique fr...Show more |
1Microsoft 1Sql Server Management Studio Jun 17, 2026 Oct 10, 2019 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 An information disclosure vulnerability exists in Microsoft SQL Server Management Studio (SSMS) when it improperly enforces permissions, aka 'SQL Server Management Studio Information Disclosure Vulnerability'. This CVE I...Show more |
The flowd process, responsible for forwarding traffic in SRX Series services gateways, may crash and restart when processing specific transit IP packets through an IPSec tunnel. Continued processing of these packets may...Show more |
SSL-Proxy feature on SRX devices fails to handle a hardware resource limitation which can be exploited by remote SSL/TLS servers to crash the flowd daemon. Repeated crashes of the flowd daemon can result in an extended d...Show more |