Vulnerabilities > Loop with Unreachable Exit Condition ('Infinite Loop')

DATE CVE VULNERABILITY TITLE RISK
2023-06-28 CVE-2023-20116 Infinite Loop vulnerability in Cisco Unified Communications Manager
A vulnerability in the Administrative XML Web Service (AXL) API of Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified CM SME) could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to insufficient validation of user-supplied input to the web UI of the Self Care Portal.
network
low complexity
cisco CWE-835
5.7
2023-06-27 CVE-2023-36464 Infinite Loop vulnerability in multiple products
pypdf is an open source, pure-python PDF library.
local
low complexity
pypdf2-project pypdf-project CWE-835
5.5
2023-06-26 CVE-2023-35933 Infinite Loop vulnerability in Openfga
OPenFGA is an open source authorization/permission engine built for developers.
network
low complexity
openfga CWE-835
7.5
2023-06-13 CVE-2023-33305 Infinite Loop vulnerability in Fortinet Fortios and Fortiproxy
A loop with unreachable exit condition ('infinite loop') in Fortinet FortiOS version 7.2.0 through 7.2.4, FortiOS version 7.0.0 through 7.0.10, FortiOS 6.4 all versions, FortiOS 6.2 all versions, FortiOS 6.0 all versions, FortiProxy version 7.2.0 through 7.2.3, FortiProxy version 7.0.0 through 7.0.9, FortiProxy 2.0 all versions, FortiProxy 1.2 all versions, FortiProxy 1.1 all versions, FortiProxy 1.0 all versions, FortiWeb version 7.2.0 through 7.2.1, FortiWeb version 7.0.0 through 7.0.6, FortiWeb 6.4 all versions, FortiWeb 6.3 all versions allows attacker to perform a denial of service via specially crafted HTTP requests.
network
low complexity
fortinet CWE-835
6.5
2023-05-30 CVE-2023-2952 Infinite Loop vulnerability in multiple products
XRA dissector infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via packet injection or crafted capture file
network
low complexity
wireshark debian CWE-835
6.5
2023-05-26 CVE-2023-2879 Infinite Loop vulnerability in Wireshark
GDSDB infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via packet injection or crafted capture file
network
low complexity
wireshark CWE-835
7.5
2023-05-03 CVE-2023-30300 Infinite Loop vulnerability in W3 Webassembly 1.0
An issue in the component hang.wasm of WebAssembly 1.0 causes an infinite loop.
local
low complexity
w3 CWE-835
5.5
2023-04-17 CVE-2015-10103 Infinite Loop vulnerability in Forget IT Project Forget IT
A vulnerability, which was classified as problematic, was found in InternalError503 Forget It up to 1.3.
local
low complexity
forget-it-project CWE-835
5.5
2023-03-03 CVE-2023-27560 Infinite Loop vulnerability in PHPseclib
Math/PrimeField.php in phpseclib 3.x before 3.0.19 has an infinite loop with composite primefields.
network
low complexity
phpseclib CWE-835
7.5
2023-02-23 CVE-2023-25824 Infinite Loop vulnerability in MOD Gnutls Project MOD Gnutls 0.10.0/0.9.0/0.9.1
Mod_gnutls is a TLS module for Apache HTTPD based on GnuTLS.
network
low complexity
mod-gnutls-project CWE-835
7.5