Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2021-02-17 CVE-2020-24452 Improper Input Validation vulnerability in Intel SGX Platform
Improper input validation in the Intel(R) SGX Platform Software for Windows* may allow an authenticated user to potentially enable a denial of service via local access.
local
low complexity
intel CWE-20
5.5
2021-02-17 CVE-2020-12385 Improper Input Validation vulnerability in Intel Graphics Drivers
Improper input validation in some Intel(R) Graphics Drivers before version 26.20.100.8141 may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-20
7.8
2021-02-17 CVE-2020-12377 Improper Input Validation vulnerability in Intel BMC Firmware 1.06.06
Insufficient input validation in the BMC firmware for some Intel(R) Server Boards, Server Systems and Compute Modules before version 2.47 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-20
7.8
2021-02-17 CVE-2020-12366 Improper Input Validation vulnerability in Intel Graphics Drivers
Insufficient input validation in some Intel(R) Graphics Drivers before version 27.20.100.8587 may allow a privileged user to potentially enable an escalation of privilege via local access.
local
low complexity
intel CWE-20
7.8
2021-02-17 CVE-2020-12363 Improper Input Validation vulnerability in Intel Graphics Drivers
Improper input validation in some Intel(R) Graphics Drivers for Windows* before version 26.20.100.7212 and before Linux kernel version 5.5 may allow a privileged user to potentially enable a denial of service via local access.
local
low complexity
intel CWE-20
5.5
2021-02-15 CVE-2020-7071 Improper Input Validation vulnerability in multiple products
In PHP versions 7.3.x below 7.3.26, 7.4.x below 7.4.14 and 8.0.0, when validating URL with functions like filter_var($url, FILTER_VALIDATE_URL), PHP will accept an URL with invalid password as valid URL.
network
low complexity
php debian netapp CWE-20
5.3
2021-02-10 CVE-2021-27179 Improper Input Validation vulnerability in Fiberhome Hg6245D Firmware Rp2613
An issue was discovered on FiberHome HG6245D devices through RP2613.
network
low complexity
fiberhome CWE-20
7.5
2021-02-10 CVE-2020-28870 Improper Input Validation vulnerability in Inoideas Inoerp 0.7.2
In InoERP 0.7.2, an unauthorized attacker can execute arbitrary code on the server side due to lack of validations in /modules/sys/form_personalization/json_fp.php.
network
low complexity
inoideas CWE-20
critical
9.8
2021-02-09 CVE-2020-14343 Improper Input Validation vulnerability in multiple products
A vulnerability was discovered in the PyYAML library in versions before 5.4, where it is susceptible to arbitrary code execution when it processes untrusted YAML files through the full_load method or with the FullLoader loader.
network
low complexity
pyyaml oracle CWE-20
critical
9.8
2021-02-09 CVE-2020-28645 Improper Input Validation vulnerability in Owncloud
Deleting users with certain names caused system files to be deleted.
network
low complexity
owncloud CWE-20
critical
9.1