CWE-244
17 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-244page 1 of 1
- CVE-2022-20922MEDIUMCVSS 5.8EG 6.52022-11-15
Multiple vulnerabilities in the Server Message Block Version 2 (SMB2) processor of the Snort detection engine on multiple Cisco products could allow an unauthenticated, remote attacker to bypass the configured policies or cause a denial of…
- CVE-2022-20943MEDIUMCVSS 5.8EG 5.82022-11-15
Multiple vulnerabilities in the Server Message Block Version 2 (SMB2) processor of the Snort detection engine on multiple Cisco products could allow an unauthenticated, remote attacker to bypass the configured policies or cause a denial of…
- CVE-2023-20031MEDIUMCVSS 4.0EG 4.02023-11-01
A vulnerability in the SSL/TLS certificate handling of Snort 3 Detection Engine integration with Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the Snort 3 detection engine to restart…
- CVE-2023-20070MEDIUMCVSS 4.0EG 4.02023-11-01
A vulnerability in the TLS 1.3 implementation of the Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the Snort 3 detection engine to unexpectedly restart. This vulnerability is due to …
- CVE-2023-20177MEDIUMCVSS 4.0EG 4.02023-11-01
A vulnerability in the SSL file policy implementation of Cisco Firepower Threat Defense (FTD) Software that occurs when the SSL/TLS connection is configured with a URL Category and the Snort 3 detection engine could allow an unauthenticate…
- CVE-2025-1719MEDIUMCVSS 5.9EG 5.92026-01-20
IBM Concert 1.0.0 through 2.1.0 could allow a remote attacker to obtain sensitive information from allocated memory due to improper clearing of heap memory.
- CVE-2025-1721MEDIUMCVSS 5.9EG 5.92025-12-26
IBM Concert 1.0.0 through 2.1.0 could allow a remote attacker to obtain sensitive information from allocated memory due to improper clearing of heap memory.
- CVE-2025-1722MEDIUMCVSS 5.9EG 5.92026-01-20
IBM Concert 1.0.0 through 2.1.0 could allow a remote attacker to obtain sensitive information from allocated memory due to improper clearing of heap memory.
- CVE-2025-1759MEDIUMCVSS 5.9EG 5.92025-08-18
IBM Concert Software 1.0.0 through 1.1.0 could allow a remote attacker to obtain sensitive information from allocated memory due to improper clearing of heap memory.
- CVE-2025-26304HIGHCVSS 8.2EG 8.22025-02-20
A memory leak has been identified in the parseSWF_EXPORTASSETS function in util/parser.c of libming v0.4.8.
- CVE-2025-26305HIGHCVSS 8.2EG 8.22025-02-20
A memory leak has been identified in the parseSWF_SOUNDINFO function in util/parser.c of libming v0.4.8, which allows attackers to cause a denial of service via a crafted SWF file.
- CVE-2025-33013MEDIUMCVSS 6.2EG 6.22025-07-24
IBM MQ Operator LTS 2.0.0 through 2.0.29, MQ Operator CD 3.0.0, 3.0.1, 3.1.0 through 3.1.3, 3.3.0, 3.4.0, 3.4.1, 3.5.0, 3.5.1, 3.6.0, and MQ Operator SC2 3.2.0 through 3.2.13 Container could disclose sensitive information to a local user d…
- CVE-2025-33101MEDIUMCVSS 5.9EG 5.92026-02-17
IBM Concert 1.0.0 through 2.1.0 could allow an attacker to obtain sensitive information using man in the middle techniques due to improper clearing of heap memory.
- CVE-2025-36083MEDIUMCVSS 6.2EG 6.22025-10-28
IBM Concert Software 1.0.0 through 2.0.0 could allow a local user to obtain sensitive information from buffers due to improper clearing of heap memory before release.
- CVE-2025-36118HIGHCVSS 7.5EG 7.52025-11-17
IBM Storage Virtualize 8.4, 8.5, 8.7, and 9.1 IKEv1 implementation allows remote attackers to obtain sensitive information from device memory via a Security Association (SA) negotiation request.
- CVE-2025-45663MEDIUMCVSS 6.5EG 6.52025-11-03
An issue in NetSurf v3.11 causes the application to read uninitialized heap memory when creating a dom_event structure.
- CVE-2025-5105HIGHCVSS 7.3EG 7.32025-05-23
A vulnerability was found in TOZED ZLT W51 up to 1.4.2 and classified as critical. Affected by this issue is some unknown functionality of the component Service Port 7777. The manipulation leads to improper clearing of heap memory before r…
Map vulnerabilities like CWE-244 to your infrastructure
EchelonGraph correlates every CVE — across CWE-244 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →