Skip to main content

CWE archive

CWE-824 CVEs

Programmatic archive

291 CVEs tagged with CWE-82421 Critical, 171 High, 85 Medium, 14 Low, 0 Unrated.

CVE-2023-27858

Published Oct 27, 2023

Rockwell Automation Arena Simulation contains an arbitrary code execution vulnerability that could potentially allow a malicious user to commit unauthorized code to the software b…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-4508

Published Aug 24, 2023

A user able to control file input to Gerbv, between versions 2.4.0 and 2.10.0, can cause a crash and cause denial-of-service with a specially crafted Gerber RS-274X file.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-46280

Published Jul 21, 2023

A use of uninitialized pointer vulnerability exists in the PQS format pFormat functionality of Open Babel 3.1.1 and master commit 530dbfa3. A specially crafted malformed file can…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2022-44451

Published Jul 21, 2023

A use of uninitialized pointer vulnerability exists in the MSI format atom functionality of Open Babel 3.1.1 and master commit 530dbfa3. A specially crafted malformed file can lea…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2022-42885

Published Jul 21, 2023

A use of uninitialized pointer vulnerability exists in the GRO format res functionality of Open Babel 3.1.1 and master commit 530dbfa3. A specially crafted malformed file can lead…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-21618

Published Jun 15, 2023

Adobe Substance 3D Designer version 12.4.1 (and earlier) is affected by an Access of Uninitialized Pointer vulnerability that could result in arbitrary code execution in the conte…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-29178

Published Jun 13, 2023

A access of uninitialized pointer vulnerability [CWE-824] in Fortinet FortiProxy version 7.2.0 through 7.2.3 and before 7.0.9 and FortiOS version 7.2.0 through 7.2.4 and before 7…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-24826

Published May 30, 2023

RIOT-OS, an operating system for Internet of Things (IoT) devices, contains a network stack with the ability to process 6LoWPAN frames. Prior to version 2023.04, an attacker can s…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-25007

Published May 12, 2023

A malicious actor may convince a user to open a malicious USD file that may trigger an uninitialized pointer which could result in code execution.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-29286

Published May 11, 2023

Adobe Substance 3D Painter versions 8.3.0 (and earlier) is affected by an Access of Uninitialized Pointer vulnerability that could lead to disclosure of sensitive memory. An attac…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-29278

Published May 11, 2023

Adobe Substance 3D Painter versions 8.3.0 (and earlier) is affected by an Access of Uninitialized Pointer vulnerability that could result in arbitrary code execution in the contex…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-30847

Published Apr 27, 2023

H2O is an HTTP server. In versions 2.3.0-beta2 and prior, when the reverse proxy handler tries to processes a certain type of invalid HTTP request, it tries to build an upstream U…

CVSS 8.2 · High
Vendor/product tagsBeta · best-effort

CVE-2022-43609

Published Mar 29, 2023

This vulnerability allows remote attackers to execute arbitrary code on affected installations of IronCAD. User interaction is required to exploit this vulnerability in that the t…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-26344

Published Mar 28, 2023

Adobe Dimension versions 3.4.7 (and earlier) is affected by an Access of Uninitialized Pointer vulnerability that could lead to disclosure of sensitive memory. An attacker could l…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 101-125 of 291 CVEsPage 5 of 12