Vulnerabilities > Incorrect Comparison

DATE CVE VULNERABILITY TITLE RISK
2023-08-18 CVE-2023-40037 Incorrect Comparison vulnerability in Apache Nifi 1.21.0/1.22.0
Apache NiFi 1.21.0 through 1.23.0 support JDBC and JNDI JMS access in several Processors and Controller Services with connection URL validation that does not provide sufficient protection against crafted inputs.
network
low complexity
apache CWE-697
6.5
2023-07-27 CVE-2023-23764 Incorrect Comparison vulnerability in Github Enterprise Server
An incorrect comparison vulnerability was identified in GitHub Enterprise Server that allowed commit smuggling by displaying an incorrect diff within the GitHub pull request UI.
network
low complexity
github CWE-697
7.1
2023-07-26 CVE-2023-23843 Incorrect Comparison vulnerability in Solarwinds Platform
The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability.
network
low complexity
solarwinds CWE-697
7.2
2023-07-26 CVE-2023-23844 Incorrect Comparison vulnerability in Solarwinds Platform
The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability.
network
low complexity
solarwinds CWE-697
7.2
2023-07-26 CVE-2023-33225 Incorrect Comparison vulnerability in Solarwinds Platform
The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability.
network
low complexity
solarwinds CWE-697
7.2
2023-07-10 CVE-2023-26590 Incorrect Comparison vulnerability in multiple products
A floating point exception vulnerability was found in sox, in the lsx_aiffstartwrite function at sox/src/aiff.c:622:58.
local
low complexity
sox-project redhat fedoraproject CWE-697
5.5
2023-07-10 CVE-2023-32627 Incorrect Comparison vulnerability in multiple products
A floating point exception vulnerability was found in sox, in the read_samples function at sox/src/voc.c:334:18.
local
low complexity
sox-project redhat fedoraproject CWE-697
5.5
2023-07-06 CVE-2023-36829 Incorrect Comparison vulnerability in Functional Sentry
Sentry is an error tracking and performance monitoring platform.
network
low complexity
functional CWE-697
5.4
2023-06-22 CVE-2023-32571 Incorrect Comparison vulnerability in Dynamic-Linq Linq
Dynamic Linq 1.0.7.10 through 1.2.25 before 1.3.0 allows attackers to execute arbitrary code and commands when untrusted input to methods including Where, Select, OrderBy is parsed.
network
low complexity
dynamic-linq CWE-697
critical
9.8
2023-05-12 CVE-2023-28936 Incorrect Comparison vulnerability in Apache Openmeetings
Attacker can access arbitrary recording/room Vendor: The Apache Software Foundation Versions Affected: Apache OpenMeetings from 2.0.0 before 7.1.0
network
low complexity
apache CWE-697
5.3