Vulnerabilities > Improper Check for Unusual or Exceptional Conditions

DATE CVE VULNERABILITY TITLE RISK
2022-08-16 CVE-2022-38235 Improper Check for Unusual or Exceptional Conditions vulnerability in Xpdf Project Xpdf 3.04
XPDF commit ffaf11c was discovered to contain a segmentation violation via DCTStream::getChar() at /xpdf/Stream.cc.
local
low complexity
xpdf-project CWE-754
5.5
2022-06-15 CVE-2022-20130 Improper Check for Unusual or Exceptional Conditions vulnerability in Google Android
In transportDec_OutOfBandConfig of tpdec_lib.cpp, there is a possible out of bounds write due to a heap buffer overflow.
network
low complexity
google CWE-754
critical
9.8
2022-06-07 CVE-2022-30738 Improper Check for Unusual or Exceptional Conditions vulnerability in Samsung Internet
Improper check in Loader in Samsung Internet prior to 17.0.1.69 allows attackers to spoof address bar via executing script.
network
low complexity
samsung CWE-754
4.3
2022-05-12 CVE-2022-29369 Improper Check for Unusual or Exceptional Conditions vulnerability in F5 NJS 0.7.2
Nginx NJS v0.7.2 was discovered to contain a segmentation violation via njs_lvlhsh_bucket_find at njs_lvlhsh.c.
network
low complexity
f5 CWE-754
7.5
2022-05-03 CVE-2022-28793 Improper Check for Unusual or Exceptional Conditions vulnerability in Samsung Galaxy S22 Firmware
Given the TEE is compromised and controlled by the attacker, improper state maintenance in StrongBox allows attackers to change Android ROT during device boot cycle after compromising TEE.
local
low complexity
samsung CWE-754
4.4
2022-04-25 CVE-2022-24880 Improper Check for Unusual or Exceptional Conditions vulnerability in Flask-Session-Captcha Project Flask-Session-Captcha
flask-session-captcha is a package which allows users to extend Flask by adding an image based captcha stored in a server side session.
network
low complexity
flask-session-captcha-project CWE-754
5.3
2022-04-21 CVE-2022-20804 Improper Check for Unusual or Exceptional Conditions vulnerability in Cisco Unified Communications Manager
A vulnerability in the Cisco Discovery Protocol of Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified CM SME) could allow an unauthenticated, adjacent attacker to cause a kernel panic on an affected system, resulting in a denial of service (DoS) condition.
low complexity
cisco CWE-754
6.5
2022-03-16 CVE-2022-25252 Improper Check for Unusual or Exceptional Conditions vulnerability in PTC Axeda Agent and Axeda Desktop Server
When connecting to a certain port Axeda agent (All versions) and Axeda Desktop Server for Windows (All versions) when receiving certain input throws an exception.
network
low complexity
ptc CWE-754
7.5
2022-03-09 CVE-2022-24323 Improper Check for Unusual or Exceptional Conditions vulnerability in Schneider-Electric products
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists that could cause a disruption of communication between the Modicon controller and the engineering software, when an attacker is able to intercept and manipulate specific Modbus response data.
network
high complexity
schneider-electric CWE-754
5.9
2022-02-16 CVE-2021-3560 Improper Check for Unusual or Exceptional Conditions vulnerability in multiple products
It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests, elevating the privileges of the requestor to the root user.
7.8