Threats Tagged 'cwe-1286'
View all threats tagged with 'cwe-1286'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cwe-1286'
Click on any threat for detailed analysis and mitigation recommendations
0 CVE-2026-100902 is a high-severity vulnerability in Barco ClickShare CX-20 Gen2 up to version 02.26.00.0007. It involves improper validation of the syntactic correctness of input in the Wallpaper Upload component, specifically in the /wallpaper file. The vulnerability can be exploited remotely without user interaction and requires low attack complexity. The vendor has not responded to the disclosure, and no patch or remediation information is currently available. Join the discussion | CVE Database V5 | 09/28/2026, 03:00:08 UTC Added: 09/28/2026, 03:33:19 UTC |
Net::IDN::Punycode versions before 2.590 for Perl hang, crash or return a wrong label via unvalidated malformed UTF-8 in encode_punycode. Neither backend checks that its input is well-formed UTF-8, so a string with the UTF-8 flag set over malformed bytes, as the :utf8 PerlIO layer produces from any malformed input, reaches the encoder unchecked. On perl 5.32 and later the XS backend reports a malformed sequence with a length of `(STRLEN)-1`, so the scan steps back one byte instead of forward and never ends. On earlier perls the XS returns a valid label for a different name. The pure-Perl backend runs a regex over the flagged string. Depending on the bytes, it aborts with SIGBUS on perl 5.28 and later, dies with a panic, or returns a wrong label. The documented conversion functions match the label against Unicode properties first and that match dies on such a string, so only a direct call to encode_punycode reaches the defect. The decoder is not affected. A direct caller encoding attacker-supplied bytes hangs, crashes or gets a label for a name the input never held. Join the discussion | CVE Database V5 | 09/22/2026, 07:25:37 UTC Added: 09/22/2026, 07:33:13 UTC |
Net::IDN::Punycode::PP versions before 2.590 for Perl decode a truncated label to a name containing a character it never encoded in decode_punycode. The pure-Perl decoder reads one digit at a time with four-argument substr and tests the result with defined to detect the end of the input. substr on an exhausted string returns the empty string rather than undef, so decoding continues past the end. The empty string converts to a digit value below the range, reducing the accumulator, and the decoder derives one extra code point and its position from it. The result is deterministic. The XS backend rejects the same label. Net::IDN::Punycode uses this backend wherever the XS does not build. The two backends disagree about what such a label means, so a sender can pick a label that one installation resolves to a name and another rejects. Join the discussion | CVE Database V5 | 09/22/2026, 07:25:03 UTC Added: 09/22/2026, 07:33:13 UTC |
0 Authentication bypass using an alternate path or channel and Improper validation of syntactic correctness of input vulnerability in Brainzcompany Zenius EMS 8.0 allows Remote Code Inclusion. This issue affects Zenius EMS 8.0: through OAM (Build 109). Join the discussion | CVE Database V5 | 09/11/2026, 02:29:52 UTC Added: 09/11/2026, 02:32:47 UTC |
0 Denial-of-service vulnerability in M-Files Server versions before 26.5.16015.3 allows an authenticated admin user to cause the M-Files Server process to crash and fail to restart. Join the discussion | CVE Database V5 | 08/05/2026, 09:42:23 UTC Added: 08/05/2026, 10:12:00 UTC |
0 CVE-2026-25292 is a high severity vulnerability in Qualcomm Snapdragon products involving memory corruption triggered by improper validation of syntactic correctness of untrusted input in the fastboot command handler for audio framework configuration. It affects a broad range of Snapdragon chipsets and related components. The vulnerability could lead to complete compromise of confidentiality, integrity, and availability. No official patch or remediation guidance is currently available from the vendor. Join the discussion | CVE Database V5 | 08/04/2026, 15:07:24 UTC Added: 08/04/2026, 15:42:05 UTC |
0 An Improper Validation of Syntactic Correctness of Input vulnerability in the SIP plugin of Juniper Networks Junos OS on MX Series with SPC3 and SRX Series allows an unauthenticated, network-based attacker to cause a Denial-of-Service (DoS).If the SIP ALG is enabled on an affected device, the processing of a malformed SIP invite packet will cause a flow processing daemon (flowd) crash and restart. This leads to a complete service outage until the system has automatically recovered. This issue affects Junos OS on MX Series with SPC3 and SRX Series: * all versions before 23.2R2-S7, * 23.4 versions before 23.4R2-S8, * 24.2 versions before 24.2R2-S5, * 24.4 versions before 24.4R2-S4, * 25.2 versions before 25.2R2, * 25.4 versions before 25.4R1-S2. Join the discussion | CVE Database V5 | 07/09/2026, 21:07:44 UTC Added: 07/09/2026, 21:48:06 UTC |
Fedify is a TypeScript library for building federated server apps powered by ActivityPub. Fedify previously addressed SSRF/internal network access in GHSA-p9cg-vqcc-grcx by adding public URL validation before runtime document and media fetching. However, the IPv4 validation logic present starting in version 0.11.2 and prior to versions 1.9.12, 1.10.11, 2.0.19, 2.1.15, and 2.2.4 appears incomplete. The `validatePublicUrl()` protection relies on `isValidPublicIPv4Address()` to reject non-public IPv4 destinations. The function blocks common private and local ranges such as `10.0.0.0/8`, `127.0.0.0/8`, `169.254.0.0/16`, `172.16.0.0/12`, and `192.168.0.0/16`, but it still treats several special-use, reserved, multicast, benchmarking, and carrier-grade NAT IPv4 ranges as valid public destinations. Because this validation is used as an SSRF defense before outbound fetches, this appears to be an incomplete mitigation or bypass class for the previous SSRF issue. Versions 1.9.12, 1.10.11, 2.0.19, 2.1.15, and 2.2.4 contain an updated patch. Join the discussion | CVE Database V5 | 06/10/2026, 20:27:43 UTC Added: 06/10/2026, 20:59:17 UTC |
0 Bulletin ID: AWS-2025-022 Scope: Amazon Content Type: Important (requires attention) Publication Date: 2025/10/09 11:00 PM PDT Description: Amazon.IonDotnet is a library for the Dotnet language that is used to read and write Amazon Ion data. We identified CVE-2025-11573, which describes an infinite loop issue in Amazon.IonDotnet library versions <v1.3.2 that may allow a threat actor to cause a denial of service through a specially crafted text input. As of August 20, 2025, this library has been deprecated and will not receive further updates. Affected versions: <1.3.2 Join the discussion | CVE Database V5 | 06/05/2026, 19:19:25 UTC Added: 10/09/2025, 18:08:08 UTC |
0 A vulnerability in Arista Networks EOS with IPsec configured allows a specially crafted packet to cause the dataplane to stop processing all IPsec traffic. The control plane may detect this and attempt a reset, but traffic may not resume. Non-IPsec traffic and IPsec traffic not originating or terminating on the system are unaffected. This issue affects specific EOS versions and was reported by a customer. Join the discussion | CVE Database V5 | 06/04/2026, 23:04:56 UTC Added: 06/04/2026, 23:19:02 UTC |
Showing 1 to 10 of 41 results