Vulnerabilities (CVE)

Filtered by CWE-1389
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-25242 2026-04-07 N/A 6.2 MEDIUM
One Search 1.1.0.0 contains a denial of service vulnerability that allows local attackers to crash the application by submitting excessively long input strings to the search functionality. Attackers can paste a buffer of 950 or more characters into the search bar to trigger an unhandled exception that crashes the application.
CVE-2024-6284 1 Google 1 Nftables 2025-09-26 N/A 7.3 HIGH
In https://github.com/google/nftables  IP addresses were encoded in the wrong byte order, resulting in an nftables configuration which does not work as intended (might block or not block the desired addresses). This issue affects:  https://pkg.go.dev/github.com/google/nftables@v0.1.0 The bug was fixed in the next released version:  https://pkg.go.dev/github.com/google/nftables@v0.2.0
CVE-2024-26015 1 Fortinet 2 Fortios, Fortiproxy 2024-11-21 N/A 3.4 LOW
An incorrect parsing of numbers with different radices vulnerability [CWE-1389] in FortiProxy version 7.4.3 and below, version 7.2.10 and below, version 7.0.17 and below and FortiOS version 7.4.3 and below, version 7.2.8 and below, version 7.0.15 and below IP address validation feature may permit an unauthenticated attacker to bypass the IP blocklist via crafted requests.