Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2020-11-23 CVE-2020-7925 Improper Input Validation vulnerability in Mongodb
Incorrect validation of user input in the role name parser may lead to use of uninitialized memory allowing an unauthenticated attacker to use a specially crafted request to cause a denial of service.
network
low complexity
mongodb CWE-20
7.5
2020-11-21 CVE-2020-14258 Improper Input Validation vulnerability in Hcltech Notes 10.0/11.0/9.0
HCL Notes is susceptible to a Denial of Service vulnerability caused by improper validation of user-supplied input.
network
low complexity
hcltech CWE-20
7.5
2020-11-21 CVE-2020-14234 Improper Input Validation vulnerability in Hcltech Domino 10.0.0/9.0/9.0.1
HCL Domino is susceptible to a Denial of Service vulnerability due to improper validation of user-supplied input, potentially giving an attacker the ability to crash the server.
network
low complexity
hcltech CWE-20
7.5
2020-11-21 CVE-2020-14230 Improper Input Validation vulnerability in Hcltech Domino
HCL Domino is susceptible to a Denial of Service vulnerability caused by improper validation of user-supplied input.
network
low complexity
hcltech CWE-20
7.5
2020-11-20 CVE-2020-7842 Improper Input Validation vulnerability in Netu Wf2429Tb Firmware 1.1.10
Improper Input validation vulnerability exists in Netis Korea D'live AP which could cause arbitrary command injection and execution when the time setting (using ntpServerlp1 parameter) for the users.
network
high complexity
netu CWE-20
6.6
2020-11-19 CVE-2020-6879 Improper Input Validation vulnerability in ZTE Zxhn F670L Firmware and Zxhn Z500 Firmware
Some ZTE devices have input verification vulnerabilities.
low complexity
zte CWE-20
3.5
2020-11-18 CVE-2020-3470 Improper Input Validation vulnerability in Cisco products
Multiple vulnerabilities in the API subsystem of Cisco Integrated Management Controller (IMC) could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges.
network
low complexity
cisco CWE-20
critical
9.8
2020-11-17 CVE-2020-7841 Improper Input Validation vulnerability in Tobesoft Xplatform
Improper input validation vulnerability exists in TOBESOFT XPLATFORM which could cause arbitrary .hta file execution when the command string is begun with http://, https://, mailto://
network
low complexity
tobesoft CWE-20
8.8
2020-11-17 CVE-2020-27125 Improper Input Validation vulnerability in Cisco Security Manager
A vulnerability in Cisco Security Manager could allow an unauthenticated, remote attacker to access sensitive information on an affected system.
network
low complexity
cisco CWE-20
critical
9.8
2020-11-16 CVE-2020-28648 Improper Input Validation vulnerability in Nagios XI
Improper input validation in the Auto-Discovery component of Nagios XI before 5.7.5 allows an authenticated attacker to execute remote code.
network
low complexity
nagios CWE-20
8.8