Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2023-08-13 CVE-2023-39389 Improper Input Validation vulnerability in Huawei Emui and Harmonyos
Vulnerability of input parameters being not strictly verified in the PMS module.
network
low complexity
huawei CWE-20
7.5
2023-08-11 CVE-2022-34657 Improper Input Validation vulnerability in Intel Pcsd Bios
Improper input validation in firmware for some Intel(R) PCSD BIOS before version 02.01.0013 may allow a privileged user to potentially enable information disclosure via local access.
local
low complexity
intel CWE-20
4.4
2023-08-11 CVE-2023-26587 Improper Input Validation vulnerability in Intel Easy Streaming Wizard
Improper input validation for the Intel(R) Easy Streaming Wizard software may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-20
7.8
2023-08-08 CVE-2023-39209 Improper Input Validation vulnerability in Zoom
Improper input validation in Zoom Desktop Client for Windows before 5.15.5 may allow an authenticated user to enable an information disclosure via network access.
network
low complexity
zoom CWE-20
6.5
2023-08-08 CVE-2023-21647 Improper Input Validation vulnerability in Qualcomm products
Information disclosure in Bluetooth when an GATT packet is received due to improper input validation.
network
low complexity
qualcomm CWE-20
6.5
2023-08-07 CVE-2023-27373 Improper Input Validation vulnerability in Insyde Insydeh2O
An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5.
local
low complexity
insyde CWE-20
5.5
2023-07-29 CVE-2022-4911 Improper Input Validation vulnerability in Google Chrome
Insufficient data validation in DevTools in Google Chrome prior to 106.0.5249.62 allowed a remote attacker to bypass content security policy via a crafted HTML page.
network
low complexity
google CWE-20
6.5
2023-07-29 CVE-2022-4925 Improper Input Validation vulnerability in Google Chrome
Insufficient validation of untrusted input in QUIC in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to perform header splitting via malicious network traffic.
network
low complexity
google CWE-20
6.5
2023-07-26 CVE-2022-43713 Improper Input Validation vulnerability in Gxsoftware Xperiencentral
Interactive Forms (IAF) in GX Software XperienCentral versions 10.33.1 until 10.35.0 was vulnerable to invalid data input because form validation could be bypassed.
network
low complexity
gxsoftware CWE-20
7.5
2023-07-26 CVE-2022-2502 Improper Input Validation vulnerability in Hitachienergy Rtu500 Firmware
A vulnerability exists in the HCI IEC 60870-5-104 function included in certain versions of the RTU500 series product.
network
low complexity
hitachienergy CWE-20
7.5