Skip to main content

CWE archive

CWE-704 CVEs

Programmatic archive

273 CVEs tagged with CWE-70422 Critical, 198 High, 48 Medium, 5 Low, 0 Unrated.

CVE-2018-14403

Published Jul 19, 2018

MP4NameFirstMatches in mp4util.cpp in MP4v2 2.0.0 mishandles substrings of atom names, leading to use of an inappropriate data type for associated atoms. The resulting type confus…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2018-14379

Published Jul 18, 2018

MP4Atom::factory in mp4atom.cpp in MP4v2 2.0.0 incorrectly uses the MP4ItemAtom data type in a certain case where MP4DataAtom is required, which allows remote attackers to cause a…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2018-4945

Published Jul 9, 2018

Adobe Flash Player versions 29.0.0.171 and earlier have a Type Confusion vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the curren…

CVSS 8.8 · High
evidence mentions
2
Buzz score
17.5

CVE-2018-12453

Published Jun 16, 2018

Type confusion in the xgroupCommand function in t_stream.c in redis-server in Redis before 5.0 allows remote attackers to cause denial-of-service via an XGROUP command in which th…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-7813

Published Jun 11, 2018

Inside the JavaScript parser, a cast of an integer to a narrower type can result in data read from outside the buffer being parsed. This usually results in a non-exploitable crash…

CVSS 8.2 · High
Vendor/product tagsBeta · best-effort

CVE-2018-4219

Published Jun 8, 2018

An issue was discovered in certain Apple products. macOS before 10.13.5 is affected. The issue involves the "ATS" component. It allows attackers to gain privileges via a crafted a…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2018-4944

Published May 19, 2018

Adobe Flash Player versions 29.0.0.140 and earlier have an exploitable type confusion vulnerability. Successful exploitation could lead to arbitrary code execution in the context…

CVSS 9.8 · Critical
evidence mentions
3
Buzz score
20.4

CVE-2018-3843

Published Apr 19, 2018

An exploitable type confusion vulnerability exists in the way Foxit PDF Reader version 9.0.1.1049 parses files with associated file annotations. A specially crafted PDF document c…

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2018-8076

Published Mar 15, 2018

ZenMate 1.5.4 for macOS suffers from a type confusion vulnerability within the com.zenmate.chron-xpc LaunchDaemon component. The LaunchDaemon implements an XPC service that uses a…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2018-6480

Published Jan 31, 2018

A type confusion issue was discovered in CCN-lite 2, leading to a memory access violation and a failure of the nonce feature (which, for example, helped with loop prevention). ccn…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-16582

Published Dec 20, 2017

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 8.3.2.25013. User interaction is required to exploit this vulnerab…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort
Showing 201-225 of 273 CVEsPage 9 of 11