Vulnerabilities > Incorrect Type Conversion or Cast

DATE CVE VULNERABILITY TITLE RISK
2019-11-07 CVE-2011-2337 Incorrect Type Conversion or Cast vulnerability in Google Blink
A wrong type is used for a return value from strlen in WebKit in Google Chrome before Blink M12 on 64-bit platforms.
network
low complexity
google CWE-704
critical
9.8
2019-11-05 CVE-2011-1460 Incorrect Type Conversion or Cast vulnerability in Google Blink
WebKit in Google Chrome before Blink M11 contains a bad cast to RenderBlock when anonymous blocks are renderblocks.
network
low complexity
google CWE-704
7.5
2019-10-02 CVE-2019-12693 Incorrect Type Conversion or Cast vulnerability in Cisco Adaptive Security Appliance
A vulnerability in the Secure Copy (SCP) feature of Cisco Adaptive Security Appliance (ASA) Software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition.
network
low complexity
cisco CWE-704
4.9
2019-09-06 CVE-2016-7398 Incorrect Type Conversion or Cast vulnerability in PHP Ext-Http
A type confusion vulnerability in the merge_param() function of php_http_params.c in PHP's pecl-http extension 3.1.0beta2 (PHP 7) and earlier as well as 2.6.0beta2 (PHP 5) and earlier allows attackers to crash PHP and possibly execute arbitrary code via crafted HTTP requests.
network
low complexity
php CWE-704
7.5
2019-08-05 CVE-2019-10980 Incorrect Type Conversion or Cast vulnerability in Laquisscada Scada 4.3.1.71
A type confusion vulnerability may be exploited when LAquis SCADA 4.3.1.71 processes a specially crafted project file.
6.8
2019-07-31 CVE-2019-10355 Incorrect Type Conversion or Cast vulnerability in multiple products
A sandbox bypass vulnerability in Jenkins Script Security Plugin 1.61 and earlier related to the handling of type casts allowed attackers to execute arbitrary code in sandboxed scripts.
network
low complexity
jenkins redhat CWE-704
8.8
2019-07-25 CVE-2019-2306 Incorrect Type Conversion or Cast vulnerability in Qualcomm products
Improper casting of structure while handling the buffer leads to out of bound read in display in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9150, MDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, QCS405, QCS605, Qualcomm 215, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 615/16/SD 415, SD 625, SD 632, SD 636, SD 665, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 820, SD 820A, SD 835, SD 845 / SD 850, SD 855, SDA660, SDM439, SDM630, SDM660, SDX20
local
low complexity
qualcomm CWE-704
4.6
2019-06-27 CVE-2018-6157 Incorrect Type Conversion or Cast vulnerability in Google Chrome
Type confusion in WebRTC in Google Chrome prior to 68.0.3440.75 allowed a remote attacker to potentially exploit heap corruption via a crafted video file.
network
low complexity
google CWE-704
8.8
2019-06-07 CVE-2019-2097 Incorrect Type Conversion or Cast vulnerability in Google Android
In HAliasAnalyzer.Query of hydrogen-alias-analysis.h, there is possible memory corruption due to type confusion.
network
low complexity
google CWE-704
critical
10.0
2019-06-07 CVE-2019-6532 Incorrect Type Conversion or Cast vulnerability in Panasonic Control Fpwin PRO
Panasonic FPWIN Pro version 7.3.0.0 and prior allows attacker-created project files to be loaded by an authenticated user triggering incompatible type errors because the resource does not have expected properties.
network
panasonic CWE-704
6.8