Attackers can create long chains of CAs that would lead to OctoRPKI exceeding its max iterations parameter. In consequen
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists that could cause a disruption of co
A vulnerability in the Cisco Discovery Protocol of Cisco Unified Communications Manager (Unified CM) and Cisco Unified C
flask-session-captcha is a package which allows users to extend Flask by adding an image based captcha stored in a serve
On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, an
Next.js is a React framework that can provide building blocks to create web applications. All of the following must be t
Uncaptured exceptions in the home screen module. Successful exploitation of this vulnerability may affect stability.
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper N
An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol daemon (rpd) of Juniper Ne
Improper Check for Unusual or Exceptional Conditions vulnerability in handling the requests to Apache Traffic Server. T
An issue was discovered in MediaWiki before 1.35.5, 1.36.x before 1.36.3, and 1.37.x before 1.37.1. A title blocked by A
Given the TEE is compromised and controlled by the attacker, improper state maintenance in StrongBox allows attackers to
Improper check in Loader in Samsung Internet prior to 17.0.1.69 allows attackers to spoof address bar via executing scri
An improper check for unusual or exceptional conditions in Juniper Networks Junos OS and Junos OS Evolved Routing Protoc
Sylabs Singularity 3.5.x and 3.6.x, and SingularityPRO before 3.5-8, has an Incorrect Check of a Function's Return Value
A vulnerability in the DNS application layer gateway (ALG) functionality used by Network Address Translation (NAT) in Ci
Envoy is an open source L7 proxy and communication bus designed for large modern service oriented architectures. In affe
Pomerium is an open source identity-aware access proxy. Envoy, which Pomerium is based on, can abnormally terminate if a
In loadAnimation of WindowContainer.java, there is a possible way to keep displaying a malicious app while a target app
Improper conditions check in some Intel(R) Graphics Drivers before versions 26.20.100.8141, 15.45.32.5145 and 15.40.46.5
An out-of-bounds write vulnerability exists in the TIFF header count-processing functionality of Accusoft ImageGear 19.8
An improper check for unusual or exceptional conditions issue exists within the parsing DGN files from Drawings SDK (Ver
pcapture is an open source dumpcap web service interface . In affected versions this vulnerability allows an authenticat
Some parsing functions in the affected product do not check the return value of malloc and the thread handling the messa
OpenVPN Access Server 2.7.3 to 2.8.7 allows remote attackers to trigger an assert during the user authentication phase v
An issue was discovered in Joomla! 2.5.0 through 3.9.27. Install action in com_installer lack the required hardcoded ACL
On Juniper Networks Junos OS devices with Multipath or add-path feature enabled, processing a specific BGP UPDATE can le
A vulnerability in the handling of exceptional conditions in Juniper Networks Junos OS Evolved (EVO) allows an attacker
There is an Improper Check for Unusual or Exceptional Conditions Vulnerability in Huawei Smartphone.Successful exploitat
WAL-G before 1.1, when a non-libsodium build (e.g., one of the official binary releases published as GitHub Releases) is
In Contiki 3.0, Telnet option negotiation is mishandled. During negotiation between a server and a client, the server ma
The time check operation of PepeAuctionSale 1.0 can be rendered ineffective by assigning a large number to the _duration
An Improper Check for Unusual or Exceptional Conditions in packet processing on the MS-MPC/MS-MIC utilized by Juniper Ne
Mercurius is a GraphQL adapter for Fastify. Any users from [email protected] to 8.11.1 are subjected to a denial of servi
Improper conditions check in some Intel(R) Ethernet Controllers 800 series Linux drivers before version 1.4.11 may allow
In Docker before versions 9.03.15, 20.10.3 there is a vulnerability in which pulling an intentionally malformed Docker i
PJSIP is a free and open source multimedia communication library written in C language implementing standard based proto
An improper check for unusual or exceptional conditions vulnerability in Juniper Networks MX Series platforms with Trio-
Due to an improper check for unusual or exceptional conditions in Juniper Networks Junos OS and Junos OS Evolved the Rou
In Juniper Networks Junos OS Evolved, receipt of a stream of specific genuine Layer 2 frames may cause the Advanced Forw
An issue was discovered in JerryScript 2.4.0. There is a SEGV in main_print_unhandled_exception in main-utils.c file.
DoS attack can be performed when an email contains specially designed URL in the body. It can lead to the high CPU usage
In a Segment Routing ISIS (SR-ISIS)/MPLS environment, on Juniper Networks Junos OS and Junos OS Evolved devices, configu
A vulnerability in the processing of specific MPLS packets in Juniper Networks Junos OS on MX Series and EX9200 Series d
Dell EMC PowerScale OneFS versions 8.1.2-9.1.0.x contain an Improper Check for Unusual or Exceptional Conditions in its
The Cosmos-SDK is a framework for building blockchain applications in Golang. Affected versions of the SDK were vulnerab
An improper error handling in Exynos CP booting driver prior to SMR Oct-2021 Release 1 allows local attackers to bypass
An issue was discovered in netplex json-smart-v1 through 2015-10-23 and json-smart-v2 through 2.4. An exception is throw
On Juniper Networks Junos OS devices configured with BGP origin validation using Resource Public Key Infrastructure (RPK
An Improper Check for Unusual or Exceptional Conditions vulnerability combined with a Race Condition in the flow daemon
Frequently Asked Questions
What is CWE-754?
CWE-754 (CWE-754) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-754?
There are 772 CVE records associated with CWE-754 in our database. Of these, 20 are critical severity, 245 are high severity, and 287 are medium severity.
How can I protect against CWE-754 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-754 using AI-powered security agents.
Detect CWE-754 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-754 vulnerabilities across your infrastructure.
Get Started