VYPR

CWE-167

Improper Handling of Additional Special Element

BaseDraft

Description

The product receives input from an upstream component, but it does not handle or incorrectly handles when an additional unexpected special element is provided.

Hierarchy (View 1000)

Children

none

CVEs mapped to this weakness (5)

  • CVE-2025-30656HigApr 9, 2025
    risk 0.49cvss 7.5epss 0.00

    An Improper Handling of Additional Special Element vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS on MX Series with MS-MPC, MS-MIC and SPC3, and SRX Series, allows an unauthenticated, network-based attacker to cause a Denial-of-Service (DoS). …

  • CVE-2023-4809HigSep 6, 2023
    risk 0.49cvss 7.5epss 0.01

    In pf packet processing with a 'scrub fragment reassemble' rule, a packet containing multiple IPv6 fragment headers would be reassembled, and then immediately processed. That is, a packet with multiple fragment extension headers would not be recognized as the correct ultimate…

  • CVE-2025-25006MedAug 12, 2025
    risk 0.35cvss 5.3epss 0.01

    Improper handling of additional special element in Microsoft Exchange Server allows an unauthorized attacker to perform spoofing over a network.

  • CVE-2023-3580MedJul 10, 2023
    risk 0.00cvss 4.3epss 0.01

    Improper Handling of Additional Special Element in GitHub repository squidex/squidex prior to 7.4.0.

  • CVE-2023-0643MedFeb 2, 2023
    risk 0.00cvss 6.1epss 0.01

    Improper Handling of Additional Special Element in GitHub repository squidex/squidex prior to 7.4.0.