Vulnerabilities > Incorrect Comparison

DATE CVE VULNERABILITY TITLE RISK
2021-12-26 CVE-2021-44078 Incorrect Comparison vulnerability in Unicorn-Engine Unicorn Engine
An issue was discovered in split_region in uc.c in Unicorn Engine before 2.0.0-rc5.
6.9
2021-12-17 CVE-2021-41500 Incorrect Comparison vulnerability in multiple products
Incomplete string comparison vulnerability exits in cvxopt.org cvxop <= 1.2.6 in APIs (cvxopt.cholmod.diag, cvxopt.cholmod.getfactor, cvxopt.cholmod.solve, cvxopt.cholmod.spsolve), which allows attackers to conduct Denial of Service attacks by construct fake Capsule objects.
network
low complexity
cvxopt-project fedoraproject CWE-697
7.5
2021-12-17 CVE-2021-34141 Incorrect Comparison vulnerability in multiple products
An incomplete string comparison in the numpy.core component in NumPy before 1.22.0 allows attackers to trigger slightly incorrect copying by constructing specific string objects.
network
low complexity
numpy oracle CWE-697
5.3
2021-12-13 CVE-2021-39917 Incorrect Comparison vulnerability in Gitlab
An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.9 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5 before 14.5.2.
network
low complexity
gitlab CWE-697
4.0
2021-11-18 CVE-2021-23146 Incorrect Comparison vulnerability in Gallagher Command Centre
An Incomplete Comparison with Missing Factors vulnerability in the Gallagher Controller allows an attacker to bypass PIV verification.
network
low complexity
gallagher CWE-697
7.5
2021-10-07 CVE-2021-3833 Incorrect Comparison vulnerability in Artica Integria IMS 5.0.92
Integria IMS login check uses a loose comparator ("==") to compare the MD5 hash of the password provided by the user and the MD5 hash stored in the database.
network
low complexity
artica CWE-697
critical
9.8
2021-09-27 CVE-2021-3828 Incorrect Comparison vulnerability in Nltk
nltk is vulnerable to Inefficient Regular Expression Complexity
network
low complexity
nltk CWE-697
5.0
2021-09-22 CVE-2020-23478 Incorrect Comparison vulnerability in Leoeditor LEO 6.2.1
Leo Editor v6.2.1 was discovered to contain a regular expression denial of service (ReDoS) vulnerability in the component plugins/importers/dart.py.
network
low complexity
leoeditor CWE-697
7.5
2021-09-20 CVE-2021-39514 Incorrect Comparison vulnerability in Jpeg Libjpeg
An issue was discovered in libjpeg through 2020021.
network
jpeg CWE-697
4.3
2021-09-08 CVE-2021-1904 Incorrect Comparison vulnerability in Qualcomm products
Child process can leak information from parent process due to numeric pids are getting compared and these pid can be reused in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
local
low complexity
qualcomm CWE-697
2.1