Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2021-01-08 CVE-2021-1066 Improper Input Validation vulnerability in Nvidia Virtual GPU Manager
NVIDIA vGPU manager contains a vulnerability in the vGPU plugin, in which input data is not validated, which may lead to unexpected consumption of resources, which in turn may lead to denial of service.
local
low complexity
nvidia CWE-20
5.5
2021-01-08 CVE-2021-1065 Improper Input Validation vulnerability in Nvidia Virtual GPU Manager
NVIDIA vGPU manager contains a vulnerability in the vGPU plugin, in which input data is not validated, which may lead to tampering of data or denial of service.
local
low complexity
nvidia CWE-20
7.1
2021-01-08 CVE-2021-1060 Improper Input Validation vulnerability in Nvidia Virtual GPU Manager
NVIDIA vGPU software contains a vulnerability in the guest kernel mode driver and vGPU plugin, in which an input index is not validated, which may lead to tampering of data or denial of service.
local
low complexity
nvidia CWE-20
7.1
2021-01-08 CVE-2020-4667 Improper Input Validation vulnerability in IBM Engineering Requirements Quality Assistant On-Premises
IBM Engineering Requirements Quality Assistant On-Premises could allow an authenticated user to obtain sensitive information due to improper input validation.
network
low complexity
ibm CWE-20
4.3
2021-01-08 CVE-2021-1053 Improper Input Validation vulnerability in Nvidia GPU Driver
NVIDIA GPU Display Driver for Windows and Linux, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape or IOCTL in which improper validation of a user pointer may lead to denial of service.
local
low complexity
nvidia CWE-20
5.5
2021-01-07 CVE-2020-4896 Improper Input Validation vulnerability in IBM Emptoris Sourcing 10.1.0.0
IBM Emptoris Sourcing 10.1.0, 10.1.1, and 10.1.3 is vulnerable to web cache poisoning, caused by improper input validation by modifying HTTP request headers.
network
low complexity
ibm CWE-20
6.5
2021-01-06 CVE-2020-36175 Improper Input Validation vulnerability in Ninjaforms Ninja Forms
The Ninja Forms plugin before 3.4.27.1 for WordPress allows attackers to bypass validation via the email field.
network
low complexity
ninjaforms CWE-20
5.3
2021-01-04 CVE-2020-25275 Improper Input Validation vulnerability in multiple products
Dovecot before 2.3.13 has Improper Input Validation in lda, lmtp, and imap, leading to an application crash via a crafted email message with certain choices for ten thousand MIME parts.
network
low complexity
dovecot debian fedoraproject CWE-20
7.5
2021-01-01 CVE-2018-25002 Improper Input Validation vulnerability in Sunhater Kcfinder
uploader.php in the KCFinder integration project through 2018-06-01 for Drupal mishandles validation, aka SA-CONTRIB-2018-024.
network
low complexity
sunhater CWE-20
8.8
2020-12-31 CVE-2016-9026 Improper Input Validation vulnerability in Exponentcms Exponent CMS
Exponent CMS before 2.6.0 has improper input validation in fileController.php.
network
low complexity
exponentcms CWE-20
critical
9.8