Vulnerabilities > Interpretation Conflict

DATE CVE VULNERABILITY TITLE RISK
2023-02-07 CVE-2023-22735 Interpretation Conflict vulnerability in Zulip Server 20230109
Zulip is an open-source team collaboration tool.
network
low complexity
zulip CWE-436
4.6
2023-02-07 CVE-2023-24813 Interpretation Conflict vulnerability in Dompdf Project Dompdf 2.0.2
Dompdf is an HTML to PDF converter written in php.
network
low complexity
dompdf-project CWE-436
critical
9.8
2023-02-04 CVE-2019-25101 Interpretation Conflict vulnerability in Turbogears Project Turbogears 1.0.11.10
A vulnerability classified as critical has been found in OnShift TurboGears 1.0.11.10.
network
low complexity
turbogears-project CWE-436
critical
9.8
2023-01-20 CVE-2022-48279 Interpretation Conflict vulnerability in multiple products
In ModSecurity before 2.9.6 and 3.x before 3.0.8, HTTP multipart requests were incorrectly parsed and could bypass the Web Application Firewall.
network
low complexity
trustwave debian CWE-436
7.5
2023-01-14 CVE-2023-22602 Interpretation Conflict vulnerability in multiple products
When using Apache Shiro before 1.11.0 together with Spring Boot 2.6+, a specially crafted HTTP request may cause an authentication bypass. The authentication bypass occurs when Shiro and Spring Boot are using different pattern-matching techniques.
network
low complexity
apache vmware CWE-436
7.5
2022-12-13 CVE-2022-41915 Interpretation Conflict vulnerability in multiple products
Netty project is an event-driven asynchronous network application framework.
network
low complexity
netty debian CWE-436
6.5
2022-11-23 CVE-2022-38115 Interpretation Conflict vulnerability in Solarwinds Security Event Manager
Insecure method vulnerability in which allowed HTTP methods are disclosed.
network
low complexity
solarwinds CWE-436
5.3
2022-10-10 CVE-2022-20915 Interpretation Conflict vulnerability in Cisco IOS XE
A vulnerability in the implementation of IPv6 VPN over MPLS (6VPE) with Zone-Based Firewall (ZBFW) of Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device.
low complexity
cisco CWE-436
7.4
2022-06-09 CVE-2022-29254 Interpretation Conflict vulnerability in Silverstripe Silverstripe-Omnipay
silverstripe-omnipay is a SilverStripe integration with Omnipay PHP payments library.
5.8
2022-02-11 CVE-2022-23773 Interpretation Conflict vulnerability in multiple products
cmd/go in Go before 1.16.14 and 1.17.x before 1.17.7 can misinterpret branch names that falsely appear to be version tags.
network
low complexity
golang netapp CWE-436
7.5