Skip to main content

CWE archive

CWE-824 CVEs

Programmatic archive

291 CVEs tagged with CWE-82421 Critical, 174 High, 82 Medium, 14 Low, 0 Unrated.

CVE-2022-43606

Published Mar 16, 2023

A use-of-uninitialized-pointer vulnerability exists in the Forward Open connection_management_entry functionality of EIP Stack Group OpENer development commit 58ee13c. A specially…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-45861

Published Mar 7, 2023

An access of uninitialized pointer vulnerability [CWE-824] in the SSL VPN portal of Fortinet FortiOS version 7.2.0 through 7.2.3, version 7.0.0 through 7.0.9 and before 6.4.11 and…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-24978

Published Feb 14, 2023

A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V2201.0006). The affected application is vulnerable to uninitialized pointer access while parsin…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-24563

Published Feb 14, 2023

A vulnerability has been identified in Solid Edge SE2022 (All versions < V222.0MP12), Solid Edge SE2023 (All versions < V223.0Update2). The affected application is vulnerable to u…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-24562

Published Feb 14, 2023

A vulnerability has been identified in Solid Edge SE2022 (All versions < V222.0MP12), Solid Edge SE2023 (All versions < V223.0Update2). The affected application is vulnerable to u…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-24561

Published Feb 14, 2023

A vulnerability has been identified in Solid Edge SE2022 (All versions < V222.0MP12), Solid Edge SE2023 (All versions < V223.0Update2). The affected application is vulnerable to u…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-22398

Published Jan 13, 2023

An Access of Uninitialized Pointer vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows a locally authenticated attacker wit…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-34480

Published Dec 22, 2022

Within the <code>lg_init()</code> function, if several allocations succeed but then one fails, an uninitialized pointer would have been freed despite never being allocated. This v…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-3084

Published Dec 8, 2022

GE CIMPICITY versions 2022 and prior is vulnerable when data from a faulting address controls code flow starting at gmmiObj!CGmmiRootOptionTable, which could allow an attacker to…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-2952

Published Dec 7, 2022

GE CIMPICITY versions 2022 and prior is vulnerable when data from a faulting address controls code flow starting at gmmiObj!CGmmiOptionContainer, which could allow an attacker t…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-42895

Published Nov 23, 2022

There is an infoleak vulnerability in the Linux kernel's net/bluetooth/l2cap_core.c's l2cap_parse_conf_req function which can be used to leak kernel pointers remotely. We recommen…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-3377

Published Nov 15, 2022

Horner Automation's Cscape version 9.90 SP 6 and prior does not properly validate user-supplied data. If a user opens a maliciously formed FNT file, then an attacker could execute…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-3378

Published Oct 27, 2022

Horner Automation's Cscape version 9.90 SP 7 and prior does not properly validate user-supplied data. If a user opens a maliciously formed FNT file, then an attacker could execute…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-29055

Published Oct 18, 2022

A access of uninitialized pointer in Fortinet FortiOS version 7.2.0, 7.0.0 through 7.0.5, 6.4.0 through 6.4.8, 6.2.0 through 6.2.10, 6.0.x, FortiProxy version 7.0.0 through 7.0.4,…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-40649

Published Sep 15, 2022

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ansys SpaceClaim 2022 R1. User interaction is required to exploit this vulnerabil…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-40646

Published Sep 15, 2022

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ansys SpaceClaim 2022 R1. User interaction is required to exploit this vulnerabil…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-40645

Published Sep 15, 2022

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ansys SpaceClaim 2022 R1. User interaction is required to exploit this vulnerabil…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort
Showing 126-150 of 291 CVEsPage 6 of 12