Vulnerabilities > Incorrect Comparison

DATE CVE VULNERABILITY TITLE RISK
2020-09-02 CVE-2020-15811 Incorrect Comparison vulnerability in multiple products
An issue was discovered in Squid before 4.13 and 5.x before 5.0.4.
6.5
2020-07-30 CVE-2020-15131 Incorrect Comparison vulnerability in Simpleledger Slp-Validate 1.0.0/1.2.1
In SLP Validate (npm package slp-validate) before version 1.2.2, there is a vulnerability to false-positive validation outcomes for the NFT1 Child Genesis transaction type.
network
low complexity
simpleledger CWE-697
5.0
2020-07-30 CVE-2020-15130 Incorrect Comparison vulnerability in Simpleledger Slpjs
In SLPJS (npm package slpjs) before version 0.27.4, there is a vulnerability to false-positive validation outcomes for the NFT1 Child Genesis transaction type.
network
low complexity
simpleledger CWE-697
5.0
2020-05-25 CVE-2020-13485 Incorrect Comparison vulnerability in Verbb Knock
The Knock Knock plugin before 1.2.8 for Craft CMS allows IP Whitelist bypass via an X-Forwarded-For HTTP header.
network
low complexity
verbb CWE-697
6.4
2020-05-12 CVE-2020-11072 Incorrect Comparison vulnerability in Simpleledger Slp-Validate 1.0.0
In SLP Validate (npm package slp-validate) before version 1.2.1, users could experience false-negative validation outcomes for MINT transaction operations.
network
low complexity
simpleledger CWE-697
5.0
2020-05-12 CVE-2020-11071 Incorrect Comparison vulnerability in Simpleledger Slpjs
SLPJS (npm package slpjs) before version 0.27.2, has a vulnerability where users could experience false-negative validation outcomes for MINT transaction operations.
network
low complexity
simpleledger CWE-697
5.0
2020-05-11 CVE-2020-10027 Incorrect Comparison vulnerability in Zephyrproject Zephyr 1.14.0/2.1.0
An attacker who has obtained code execution within a user thread is able to elevate privileges to that of the kernel.
local
low complexity
zephyrproject CWE-697
7.2
2020-05-11 CVE-2020-10024 Incorrect Comparison vulnerability in Zephyrproject Zephyr 1.14.2/2.1.0
The arm platform-specific code uses a signed integer comparison when validating system call numbers.
local
low complexity
zephyrproject CWE-697
7.2
2020-03-30 CVE-2019-20634 Incorrect Comparison vulnerability in Proofpoint Email Protection 20190908
An issue was discovered in Proofpoint Email Protection through 2019-09-08.
4.3
2020-03-23 CVE-2020-8864 Incorrect Comparison vulnerability in Dlink products
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of D-Link DIR-867, DIR-878, and DIR-882 routers with firmware 1.10B04.
low complexity
dlink CWE-697
8.3