Skip to main content

CWE archive

CWE-248 CVEs

Programmatic archive

239 CVEs tagged with CWE-2484 Critical, 131 High, 98 Medium, 6 Low, 0 Unrated.

CVE-2024-8249

Published Mar 20, 2025

mintplex-labs/anything-llm version git 6dc3642 contains an unauthenticated Denial of Service (DoS) vulnerability in the API for the embeddable chat functionality. An attacker can…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-8020

Published Mar 20, 2025

A vulnerability in lightning-ai/pytorch-lightning version 2.3.2 allows an attacker to cause a denial of service by sending an unexpected POST request to the `/api/v1/state` endpoi…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-11173

Published Mar 20, 2025

An unhandled exception in the danny-avila/librechat repository, version git 600d217, can cause the server to crash, leading to a full denial of service. This issue occurs when cer…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-11172

Published Mar 20, 2025

A vulnerability in danny-avila/librechat version git a1647d7 allows an unauthenticated attacker to cause a denial of service by sending a crafted payload to the server. The middle…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2025-24836

Published Feb 13, 2025

With a specially crafted Python script, an attacker could send continuous startMeasurement commands over an unencrypted Bluetooth connection to the affected device. This would p…

CVSS 6.1 · Medium

CVE-2025-20097

Published Feb 12, 2025

Uncaught exception in OpenBMC Firmware for the Intel(R) Server M50FCP Family and Intel(R) Server D50DNP Family before version R01.02.0002 may allow an authenticated user to potent…

CVSS 5.3 · Medium

CVE-2024-13417

Published Feb 6, 2025

Specifically crafted payloads sent to the RFID reader could cause DoS of RFID reader. After the device is restarted, it gets back to fully working state. 2N has released an up…

CVSS 4.6 · Medium

CVE-2025-20176

Published Feb 5, 2025

A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to cause a DoS condition on an affected device.…

CVSS 7.7 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-20173

Published Feb 5, 2025

A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to cause a DoS condition on an affected device.…

CVSS 7.7 · High
Vendor/product tagsBeta · best-effort

CVE-2025-20172

Published Feb 5, 2025

A vulnerability in the SNMP subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR Software could allow an authenticated, remote attacker to cause a DoS conditio…

CVSS 7.7 · High
Vendor/product tagsBeta · best-effort

CVE-2025-20171

Published Feb 5, 2025

A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to cause a DoS condition on an affected device.…

CVSS 7.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-56946

Published Feb 3, 2025

Denial of service in DNS-over-QUIC in Technitium DNS Server <= v13.2.2 allows remote attackers to permanently stop the server from accepting new DNS-over-QUIC connections by trigg…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-24883

Published Jan 30, 2025

go-ethereum (geth) is a golang execution layer implementation of the Ethereum protocol. A vulnerable node can be forced to shutdown/crash using a specially crafted message. This v…

CVSS 8.7 · High

CVE-2025-0648

Published Jan 23, 2025

Unexpected server crash in database driver in M-Files Server before 25.1.14445.5 and before 24.8 LTS SR3 allows a highly privileged attacker to cause denial of service via config…

CVSS 5.9 · Medium
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2024-54106

Published Dec 12, 2024

Null pointer dereference vulnerability in the image decoding module Impact: Successful exploitation of this vulnerability will affect availability.

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2024-11738

Published Dec 6, 2024

A flaw was found in Rustls 0.23.13 and related APIs. This vulnerability allows denial of service (panic) via a fragmented TLS ClientHello message.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-20137

Published Dec 2, 2024

In wlan driver, there is a possible client disconnection due to improper handling of exceptional conditions. This could lead to remote denial of service with no additional executi…

CVSS 7.5 · High

CVE-2024-29076

Published Nov 13, 2024

Uncaught exception for some Intel(R) CST software before version 8.7.10803 may allow an authenticated user to potentially enable denial of service via local access.

CVSS 6.8 · Medium

CVE-2024-51750

Published Nov 12, 2024

Element is a Matrix web client built using the Matrix React SDK. A malicious homeserver can send invalid messages over federation which can prevent Element Web and Desktop from re…

CVSS 5.0 · Medium

CVE-2024-51518

Published Nov 5, 2024

Vulnerability of message types not being verified in the advanced messaging modul Impact: Successful exploitation of this vulnerability may affect availability.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-33848

Published Sep 16, 2024

Uncaught exception in Intel(R) RAID Web Console software all versions may allow an authenticated user to potentially enable denial of service via local access.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-43367

Published Aug 15, 2024

Boa is an embeddable and experimental Javascript engine written in Rust. Starting in version 0.16 and prior to version 0.19.0, a wrong assumption made when handling ECMAScript's `…

CVSS 7.5 · High

CVE-2024-43357

Published Aug 15, 2024

ECMA-262 is the language specification for the scripting language ECMAScript. A problem in the ECMAScript (JavaScript) specification of async generators, introduced by a May 2021…

CVSS 8.6 · High
Showing 126-150 of 239 CVEsPage 6 of 10