Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2021-02-09 CVE-2020-4790 Improper Input Validation vulnerability in IBM Security Identity Governance and Intelligence 5.2.6
IBM Security Identity Governance and Intelligence 5.2.6 could allow a user to cause a denial of service due to improperly validating a supplied URL, rendering the application unusuable.
low complexity
ibm CWE-20
6.5
2021-02-09 CVE-2021-21126 Improper Input Validation vulnerability in multiple products
Insufficient policy enforcement in extensions in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to bypass site isolation via a crafted Chrome Extension.
network
low complexity
google microsoft CWE-20
6.5
2021-02-09 CVE-2021-21123 Improper Input Validation vulnerability in multiple products
Insufficient data validation in File System API in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to bypass filesystem restrictions via a crafted HTML page.
network
low complexity
google microsoft CWE-20
6.5
2021-02-05 CVE-2020-12122 Improper Input Validation vulnerability in Maxpcsecure MAX Spyware Detector 1.0.0.044
In Max Secure Max Spyware Detector 1.0.0.044, the driver file (MaxProc64.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x2200019.
local
low complexity
maxpcsecure CWE-20
7.8
2021-02-04 CVE-2021-0350 Improper Input Validation vulnerability in Google Android
In ged, there is a possible system crash due to an improper input validation.
local
low complexity
google CWE-20
4.4
2021-02-04 CVE-2021-0345 Improper Input Validation vulnerability in Google Android 10.0/11.0
In mobile_log_d, there is a possible escalation of privilege due to improper input validation.
local
low complexity
google CWE-20
6.7
2021-02-04 CVE-2020-4828 Improper Input Validation vulnerability in IBM API Connect
IBM API Connect 10.0.0.0 through 10.0.1.0 and 2018.4.1.0 through 2018.4.1.13 is vulnerable to web cache poisoning, caused by improper input validation by modifying HTTP request headers.
network
low complexity
ibm CWE-20
6.5
2021-02-02 CVE-2020-8734 Improper Input Validation vulnerability in Intel M10Jnp2Sb Firmware 7.209
Improper input validation in the firmware for Intel(R) Server Board M10JNP2SB before version 7.210 may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-20
6.7
2021-01-29 CVE-2021-3176 Improper Input Validation vulnerability in Mitel Businesscti Enterprise
The chat window of the Mitel BusinessCTI Enterprise (MBC-E) Client for Windows before 6.4.15 and 7.x before 7.1.2 could allow an attacker to gain access to user information by sending certain code, due to improper input validation of http links.
network
low complexity
mitel CWE-20
8.0
2021-01-26 CVE-2021-3195 Improper Input Validation vulnerability in Bitcoin Core
bitcoind in Bitcoin Core through 0.21.0 can create a new file in an arbitrary directory (e.g., outside the ~/.bitcoin directory) via a dumpwallet RPC call.
network
low complexity
bitcoin CWE-20
7.5