Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2020-09-25 CVE-2020-15199 Improper Input Validation vulnerability in Google Tensorflow 2.3.0
In Tensorflow before version 2.3.1, the `RaggedCountSparseOutput` does not validate that the input arguments form a valid ragged tensor.
network
high complexity
google CWE-20
5.9
2020-09-25 CVE-2020-15192 Improper Input Validation vulnerability in multiple products
In Tensorflow before versions 2.2.1 and 2.3.1, if a user passes a list of strings to `dlpack.to_dlpack` there is a memory leak following an expected validation failure.
network
low complexity
google opensuse CWE-20
4.3
2020-09-25 CVE-2019-7178 Improper Input Validation vulnerability in Pexip Infinity
Pexip Infinity before 20.1 allows privilege escalation by restoring a system backup.
network
low complexity
pexip CWE-20
7.2
2020-09-25 CVE-2020-24692 Improper Input Validation vulnerability in Mitel Micontact Center Business
The Ignite portal in Mitel MiContact Center Business before 9.3.0.0 could allow an attacker to execute arbitrary scripts due to insufficient input validation, aka XSS.
local
low complexity
mitel CWE-20
7.1
2020-09-25 CVE-2020-24615 Improper Input Validation vulnerability in Pexip Infinity
Pexip Infinity before 24.1 has Improper Input Validation, leading to temporary denial of service via SIP.
network
low complexity
pexip CWE-20
5.3
2020-09-25 CVE-2020-13387 Improper Input Validation vulnerability in Pexip Infinity
Pexip Infinity before 23.4 has a lack of input validation, leading to temporary denial of service via H.323.
network
low complexity
pexip CWE-20
7.5
2020-09-25 CVE-2020-12824 Improper Input Validation vulnerability in Pexip Infinity 23/23.1/23.2
Pexip Infinity 23.x before 23.3 has improper input validation, leading to a temporary software abort via RTP.
network
low complexity
pexip CWE-20
7.5
2020-09-25 CVE-2020-11805 Improper Input Validation vulnerability in Pexip Infinity and Reverse Proxy and Turn Server
Pexip Reverse Proxy and TURN Server before 6.1.0 has Incorrect UDP Access Control via TURN.
network
low complexity
pexip CWE-20
critical
9.8
2020-09-24 CVE-2020-3526 Improper Input Validation vulnerability in Cisco IOS XE 17.2
A vulnerability in the Common Open Policy Service (COPS) engine of Cisco IOS XE Software on Cisco cBR-8 Converged Broadband Routers could allow an unauthenticated, remote attacker to crash a device.
network
low complexity
cisco CWE-20
8.6
2020-09-24 CVE-2020-3516 Improper Input Validation vulnerability in Cisco IOS XE
A vulnerability in the web server authentication of Cisco IOS XE Software could allow an authenticated, remote attacker to crash the web server on the device.
network
low complexity
cisco CWE-20
4.3