CWE-126 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Kategori: CWE-126 - CVE listesi
CWE 141 kayıt
Medium CVSS: 6.5

CVE-2025-47402

Transient DOS when processing a received frame with an excessively large authentication information element.
High CVSS: 7.5

CVE-2025-66692

A buffer over-read in the PublicKey::verify() method of Binance - Trust Wallet Core before commit 5668c67 allows attackers to cause a Denial of Service (DoS) via a crafted input.
High CVSS: 8.7

CVE-2025-60003

A Buffer Over-read vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, network-based attacker to cause a Denial-of-Service (DoS). When an affected device receives…
Medium CVSS: 6.5

CVE-2025-47395

Transient DOS while parsing a WLAN management frame with a Vendor Specific Information Element.
Medium CVSS: 6.1

CVE-2025-47331

Information disclosure while processing a firmware event.
Medium CVSS: 5.5

CVE-2025-47330

Transient DOS while parsing video packets received from the video firmware.
High CVSS: 7.8

CVE-2025-62560

Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
Medium CVSS: 6.5

CVE-2025-62473

Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
High CVSS: 7.8

CVE-2025-62467

Integer overflow or wraparound in Windows Projected File System allows an authorized attacker to elevate privileges locally.
High CVSS: 7.8

CVE-2025-62464

Buffer over-read in Windows Projected File System allows an authorized attacker to elevate privileges locally.
High CVSS: 7.8

CVE-2025-62462

Buffer over-read in Windows Projected File System allows an authorized attacker to elevate privileges locally.
High CVSS: 7.8

CVE-2025-62461

Buffer over-read in Windows Projected File System Filter Driver allows an authorized attacker to elevate privileges locally.
Critical CVSS: 9.1

CVE-2025-12106

Insufficient argument validation in OpenVPN 2.7_alpha1 through 2.7_rc1 allows an attacker to trigger a heap buffer over-read when parsing IP addresses
High CVSS: 7.3

CVE-2025-63602

A vulnerability was discovered in Awesome Miner thru 11.2.4 that allows arbitrary read and write to kernel memory and MSRs (such as LSTAR) as an unprivileged user. This is due to the implementation of an insecure version of WinRing0 (1.2.0.…
High CVSS: 7.8

CVE-2025-60720

Buffer over-read in Windows TDX.sys allows an authorized attacker to elevate privileges locally.
High CVSS: 7.8

CVE-2025-47368

Memory corruption when dereferencing an invalid userspace address in a user buffer during MCDM IOCTL processing.
Medium CVSS: 6.1

CVE-2025-47362

Information disclosure while processing message from client with invalid payload.
Medium CVSS: 6.1

CVE-2025-27064

Information disclosure while registering commands from clients with diag through diagHal.
Medium CVSS: 6.9

CVE-2025-62792

Wazuh is a free and open source platform used for threat prevention, detection, and response. Prior to 4.12.0, a buffer over-read occurs in w_expression_match() when strlen() is called on str_test, because the corresponding buffer is not be…
Low CVSS: 2.1

CVE-2025-62787

Wazuh is a free and open source platform used for threat prevention, detection, and response. Prior to 4.10.2, a buffer over-read occurs in DecodeWinevt() when child_attr[p]->attributes[j] is accessed, because the corresponding index (j) is…