Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2023-09-20 CVE-2023-31010 Improper Input Validation vulnerability in Nvidia DGX H100 Firmware
NVIDIA DGX H100 BMC contains a vulnerability in IPMI, where an attacker may cause improper input validation.
network
low complexity
nvidia CWE-20
8.8
2023-09-20 CVE-2023-31011 Improper Input Validation vulnerability in Nvidia DGX H100 Firmware
NVIDIA DGX H100 BMC contains a vulnerability in the REST service where an attacker may cause improper input validation.
network
low complexity
nvidia CWE-20
8.8
2023-09-20 CVE-2023-31012 Improper Input Validation vulnerability in Nvidia DGX H100 Firmware
NVIDIA DGX H100 BMC contains a vulnerability in the REST service where an attacker may cause improper input validation.
network
low complexity
nvidia CWE-20
8.8
2023-09-20 CVE-2023-31013 Improper Input Validation vulnerability in Nvidia DGX H100 Firmware
NVIDIA DGX H100 BMC contains a vulnerability in the REST service, where an attacker may cause improper input validation.
network
low complexity
nvidia CWE-20
8.8
2023-09-20 CVE-2023-31008 Improper Input Validation vulnerability in Nvidia DGX H100 Firmware
NVIDIA DGX H100 BMC contains a vulnerability in IPMI, where an attacker may cause improper input validation.
local
low complexity
nvidia CWE-20
7.8
2023-09-20 CVE-2023-31009 Improper Input Validation vulnerability in Nvidia DGX H100 Firmware
NVIDIA DGX H100 BMC contains a vulnerability in the REST service, where an attacker may cause improper input validation.
network
low complexity
nvidia CWE-20
critical
9.8
2023-09-19 CVE-2023-32649 Improper Input Validation vulnerability in Nozominetworks CMC and Guardian
A Denial of Service (Dos) vulnerability in Nozomi Networks Guardian and CMC, due to improper input validation in certain fields used in the Asset Intelligence functionality of our IDS, allows an unauthenticated attacker to crash the IDS module by sending specially crafted malformed network packets. During the (limited) time window before the IDS module is automatically restarted, network traffic may not be analyzed.
network
low complexity
nozominetworks CWE-20
7.5
2023-09-15 CVE-2023-4680 Improper Input Validation vulnerability in Hashicorp Vault
HashiCorp Vault and Vault Enterprise transit secrets engine allowed authorized users to specify arbitrary nonces, even with convergent encryption disabled.
network
high complexity
hashicorp CWE-20
6.8
2023-09-12 CVE-2023-39208 Improper Input Validation vulnerability in Zoom
Improper input validation in Zoom Desktop Client for Linux before version 5.15.10 may allow an unauthenticated user to conduct a denial of service via network access.
network
low complexity
zoom CWE-20
7.5
2023-09-12 CVE-2023-29332 Improper Input Validation vulnerability in Microsoft Azure Kubernetes Service
Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability
network
low complexity
microsoft CWE-20
critical
9.8