CWE-130 관련 취약점
같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.
CWE-130 — 주요 취약점
악용이 확인된 것을 먼저 보여줍니다.
● 실제 악용이 확인됨CVE-2025-14847Mismatched length fields in Zlib compressed protocol headers may allow a read of uninitialized heap …83.2%높음8.7CVE-2026-90678An issue was discovered in HAProxy 3.3.0 through 3.4.4 and in 3.5-dev1 through 3.5-dev5. Exploitatio…0.5%높음7.5CVE-2026-77619Vector is a high-performance observability data pipeline. From 0.15.0 until 0.57.0, the logstash sou…0.5%높음8.7CVE-2026-73455On affected platforms running Arista EOS with Open Shortest Path First version 3 (OSPFv3) configured…0.5%높음8.9CVE-2026-94633Memory allocation with excessive size value, Improper handling of length parameter inconsistency vul…0.4%높음8.7CVE-2026-85494Improper handling of length parameter inconsistency, Uncaught exception, Inefficient Algorithmic Com…0.4%높음8.7CVE-2026-83745Memory allocation with excessive size value, Improper handling of length parameter inconsistency vul…0.4%높음8.7CVE-2026-94635Allocation of resources without limits or throttling, Improper handling of length parameter inconsis…0.4%높음8.7
전체 목록
13건
CVE-2026-87022Improper handling of length parameter inconsistency vulnerability in Apache Tomcat allows WebSocket message sm…0.4%높음7.5
CVE-2026-18397This vulnerability enables unauthenticated remote code execution (RCE) on a victim's machine by exploiting a c…0.3%심각9.4
CVE-2026-71337Stack-based buffer overflow in Windows Storage Management Provider allows an authorized attacker to elevate pr…0.3%높음7.8
CVE-2023-5778Improper handling of length parameter inconsistency vulnerability in ABB Freelance Controller DCP, ABB Freelan…0.3%심각9.2
CVE-2026-15418In the silabser.sys driver for CP210x devices v11.5.0 and earlier, a local unprivileged user with a malicious …0.2%낮음2.4
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.