CWE-191 관련 취약점
같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.
CWE-191 — 주요 취약점
악용이 확인된 것을 먼저 보여줍니다.
● 실제 악용이 확인됨CVE-2014-0497Integer underflow in Adobe Flash Player before 11.7.700.261 and 11.8.x through 12.0.x before 12.0.0.…99.9%심각9.8● 실제 악용이 확인됨CVE-2022-0185A heap-based buffer overflow flaw was found in the way the legacy_parse_param function in the Filesy…25.2%높음8.4● 실제 악용이 확인됨CVE-2021-31956Windows NTFS Elevation of Privilege Vulnerability22.3%높음7.8CVE-2026-85436MOOS essential-moos through 10.0.1 contains a buffer overflow vulnerability in CMOOSUDPLink::ReadPkt…1.2%높음8.7CVE-2026-69824Integer underflow (wrap or wraparound) in Microsoft Standard XPS allows an unauthorized attacker to …1.0%심각9.8CVE-2026-91103HP has identified and remediated multiple externally reported vulnerabilities within HPLIP. The find…1.0%보통5.1CVE-2026-84411The web management service in affected RouterOS versions contains an integer underflow in its HTTP r…0.9%심각9.3CVE-2026-69276Integer underflow (wrap or wraparound) in Microsoft UxTheme Library (uxtheme.dll) allows an unauthor…0.9%심각9.8
전체 목록
44건
CVE-2026-78453Integer underflow (wrap or wraparound) in Microsoft Windows SCSI Class System File allows an unauthorized atta…0.9%보통6.5
CVE-2026-18355A heap buffer overflow flaw was found in the SASL I/O layer of 389 Directory Server (389-ds-base). In sasl_io_…0.8%높음7.5
CVE-2026-71352Integer underflow (wrap or wraparound) in Windows Remote Access Connection Manager allows an authorized attack…0.7%높음8.8
CVE-2026-91948FreeRDP versions before 3.31.0 contain an out-of-bounds write vulnerability in server-side static virtual chan…0.6%높음7.7
CVE-2026-66307Integer underflow (wrap or wraparound) in Skype for Business allows an unauthorized attacker to deny service o…0.6%높음7.5
CVE-2026-89028MikroTik RouterOS before 7.24 contains a heap memory corruption vulnerability in the userspace SMB daemon that…0.6%높음8.2
CVE-2026-86537Uncaught exception, Loop with unreachable exit condition ('infinite loop'), Integer underflow (wrap or wraparo…0.6%높음8.7
CVE-2026-93599rustls-webpki through 0.103.12 (and 0.104.0-alpha releases before 0.104.0-alpha.7) contains a reachable panic …0.5%높음8.7
CVE-2026-82459Integer underflow (wrap or wraparound), Out-of-bounds write vulnerability in Apache Thrift C++ 32 bit THeaderT…0.4%높음8.2
CVE-2026-68827Integer underflow (wrap or wraparound) in Windows GDI+ allows an authorized attacker to elevate privileges ove…0.4%높음8.0
CVE-2026-94090A security flaw has been discovered in JusticeRage Manalyze 1.0.0. The affected element is the function PE::_p…0.4%보통5.3
CVE-2026-69303Out-of-bounds read in Push Message Routing Service allows an authorized attacker to disclose information local…0.4%보통5.5
CVE-2026-93395A missing lower-bound validation in the bson_new_from_buffer() function of libbson allows an integer underflow…0.4%보통6.9
CVE-2026-88376Bento4 1.6.0.0 contains an integer underflow vulnerability in AP4_AvccAtom::Create() and AP4_HvccAtom::Create(…0.4%높음7.5
CVE-2026-86132An integer underflow vulnerability in the WatchGuard Fireware OS IKEv2 daemon (iked) allows a remote, unauthen…0.4%높음8.2
CVE-2026-44235rabbitmq-c is a C-language AMQP client library for RabbitMQ. Prior to 0.16.0, a malicious AMQP server can send…0.4%보통6.5
CVE-2026-86133An integer underflow vulnerability in the WatchGuard Fireware OS IKE daemon (iked) allows a remote attacker wh…0.3%높음8.2
CVE-2026-69269Integer underflow (wrap or wraparound) in Microsoft Standard XPS allows an authorized attacker to elevate priv…0.3%높음7.8
CVE-2026-69421Integer underflow (wrap or wraparound) in Windows Kernel Mode Driver allows an authorized attacker to elevate …0.3%높음7.8
CVE-2026-69687Integer underflow (wrap or wraparound) in Windows USB Audio Class driver (usbaudio.sys) allows an authorized a…0.3%높음7.8
CVE-2026-77488Integer underflow (wrap or wraparound) in SQL Server allows an authorized attacker to disclose information loc…0.3%보통5.5
CVE-2026-72947Integer underflow (wrap or wraparound) in Windows File History Service allows an authorized attacker to elevat…0.3%보통6.4
CVE-2026-66767SAP NetWeaver Application Server for ABAP and ABAP Platform allows an unauthenticated user to send a specially…0.3%높음7.7
CVE-2026-69859Time-of-check time-of-use (toctou) race condition in Windows USB Audio Class driver (usbaudio.sys) allows an a…0.2%높음7.0
CVE-2026-61720FluidSynth is a software synthesizer based on the SoundFont 2 specifications. From 2.5.0 until 2.5.6, the SF2 …0.2%보통6.2
CVE-2026-81977Acrobat Reader is affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could lead to discl…0.2%보통5.5
CVE-2026-13326An out-of-bounds read in Qt NFC's language code length parsing allows a physically proximate attacker to cause…0.2%보통6.9
CVE-2026-102714`_nx_icmpv6_validate_options()` scans the option area with `while (length > 2)` (`common/src/nx_icmpv6_validat…0.2%높음7.1
CVE-2026-47540NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an att…0.1%높음7.8
CVE-2026-81881radare2 is a UNIX-like reverse engineering framework and command-line toolset. Prior to 6.2.0, radare2's Mach-…0.1%낮음3.3
CVE-2026-47585NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel module where an attacker could ca…0.1%높음7.8
CVE-2026-90996A flaw was found in sssd. A local unprivileged user could send a specially crafted request with a zero-length …0.1%보통4.0
CVE-2026-18747The MCUmgr SMP-over-console transport decodes a base64 frame, reads a 16-bit packet length from it, verifies a…0.1%보통6.8
CVE-2026-95958A security flaw has been discovered in JusticeRage Manalyze 1.0.0. Impacted is the function PE::_parse_relocat…0.1%보통4.8
CVE-2026-17504IBM PowerVM Hypervisor FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, FW1060.00 through FW1060.81, …0.1%보통5.1
CVE-2018-3926An exploitable integer underflow vulnerability exists in the ZigBee firmware update routine of the hubCore bin…보통5.5
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.