Vulnerabilities > Improper Check for Unusual or Exceptional Conditions

DATE CVE VULNERABILITY TITLE RISK
2020-12-11 CVE-2020-7536 Improper Check for Unusual or Exceptional Conditions vulnerability in Schneider-Electric products
A CWE-754:Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M340 CPUs (BMXP34* versions prior to V3.30) Modicon M340 Communication Ethernet modules (BMXNOE0100 (H) versions prior to V3.4 BMXNOE0110 (H) versions prior to V6.6 BMXNOR0200H all versions), that could cause the device to be unreachable when modifying network parameters over SNMP.
network
low complexity
schneider-electric CWE-754
7.5
2020-11-23 CVE-2019-20924 Improper Check for Unusual or Exceptional Conditions vulnerability in Mongodb 4.2.0/4.2.1
A user authorized to perform database queries may trigger denial of service by issuing specially crafted queries which trigger an invariant in the IndexBoundsBuilder.
network
low complexity
mongodb CWE-754
6.5
2020-11-19 CVE-2020-7538 Improper Check for Unusual or Exceptional Conditions vulnerability in Schneider-Electric Ecostruxure Control Expert
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in PLC Simulator on EcoStruxureª Control Expert (now Unity Pro) (all versions) that could cause a crash of the PLC simulator present in EcoStruxureª Control Expert software when receiving a specially crafted request over Modbus.
network
low complexity
schneider-electric CWE-754
7.5
2020-11-12 CVE-2020-8766 Improper Check for Unusual or Exceptional Conditions vulnerability in Intel Software Guard Extensions Data Center Attestation Primitives
Improper conditions check in the Intel(R) SGX DCAP software before version 1.6 may allow an unauthenticated user to potentially enable denial of service via adjacent access.
low complexity
intel CWE-754
6.5
2020-11-12 CVE-2020-8738 Improper Check for Unusual or Exceptional Conditions vulnerability in multiple products
Improper conditions check in Intel BIOS platform sample code for some Intel(R) Processors before may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel netapp CWE-754
6.7
2020-11-12 CVE-2020-0588 Improper Check for Unusual or Exceptional Conditions vulnerability in Intel Bios
Improper conditions check in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-754
6.7
2020-11-12 CVE-2020-0587 Improper Check for Unusual or Exceptional Conditions vulnerability in Intel Bios
Improper conditions check in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-754
6.7
2020-11-12 CVE-2020-1999 Improper Check for Unusual or Exceptional Conditions vulnerability in Paloaltonetworks Pan-Os
A vulnerability exists in the Palo Alto Network PAN-OS signature-based threat detection engine that allows an attacker to communicate with devices in the network in a way that is not analyzed for threats by sending data through specifically crafted TCP packets.
network
low complexity
paloaltonetworks CWE-754
5.3
2020-11-10 CVE-2020-16125 Improper Check for Unusual or Exceptional Conditions vulnerability in Gnome Display Manager
gdm3 versions before 3.36.2 or 3.38.2 would start gnome-initial-setup if gdm3 can't contact the accountservice service via dbus in a timely manner; on Ubuntu (and potentially derivatives) this could be be chained with an additional issue that could allow a local user to create a new privileged account.
low complexity
gnome CWE-754
6.8
2020-11-02 CVE-2020-28037 Improper Check for Unusual or Exceptional Conditions vulnerability in multiple products
is_blog_installed in wp-includes/functions.php in WordPress before 5.5.2 improperly determines whether WordPress is already installed, which might allow an attacker to perform a new installation, leading to remote code execution (as well as a denial of service for the old installation).
network
low complexity
wordpress fedoraproject debian CWE-754
critical
9.8