Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2020-08-27 CVE-2020-3398 Improper Input Validation vulnerability in Cisco Nx-Os
A vulnerability in the Border Gateway Protocol (BGP) Multicast VPN (MVPN) implementation of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a BGP session to repeatedly reset, causing a partial denial of service (DoS) condition due to the BGP session being down.
network
low complexity
cisco CWE-20
8.6
2020-08-27 CVE-2020-3397 Improper Input Validation vulnerability in Cisco Nx-Os
A vulnerability in the Border Gateway Protocol (BGP) Multicast VPN (MVPN) implementation of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause an affected device to unexpectedly reload, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-20
8.6
2020-08-26 CVE-2020-3521 Improper Input Validation vulnerability in Cisco Data Center Network Manager
A vulnerability in a specific REST API of Cisco Data Center Network Manager (DCNM) Software could allow an authenticated, remote attacker to conduct directory traversal attacks on an affected device.
network
low complexity
cisco CWE-20
6.5
2020-08-26 CVE-2020-3519 Improper Input Validation vulnerability in Cisco Data Center Network Manager
A vulnerability in a specific REST API method of Cisco Data Center Network Manager (DCNM) Software could allow an authenticated, remote attacker to conduct a path traversal attack on an affected device.
network
low complexity
cisco CWE-20
8.1
2020-08-26 CVE-2020-3507 Improper Input Validation vulnerability in Cisco products
Multiple vulnerabilities in the Cisco Discovery Protocol implementation for Cisco Video Surveillance 8000 Series IP Cameras could allow an unauthenticated, adjacent attacker to execute code remotely or cause a reload of an affected IP camera.
low complexity
cisco CWE-20
8.8
2020-08-26 CVE-2020-3506 Improper Input Validation vulnerability in Cisco products
Multiple vulnerabilities in the Cisco Discovery Protocol implementation for Cisco Video Surveillance 8000 Series IP Cameras could allow an unauthenticated, adjacent attacker to execute code remotely or cause a reload of an affected IP camera.
low complexity
cisco CWE-20
8.8
2020-08-26 CVE-2020-3496 Improper Input Validation vulnerability in Cisco products
A vulnerability in the IPv6 packet processing engine of Cisco Small Business Smart and Managed Switches could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
network
low complexity
cisco CWE-20
5.3
2020-08-21 CVE-2019-11857 Improper Input Validation vulnerability in Sierrawireless Aleos
Lack of input sanitization in AceManager of ALEOS before 4.12.0, 4.9.5 and 4.4.9 allows disclosure of sensitive system information.
network
low complexity
sierrawireless CWE-20
4.9
2020-08-21 CVE-2020-16237 Improper Input Validation vulnerability in Philips Suresigns VS4 Firmware A.07.107
Philips SureSigns VS4, A.07.107 and prior.
low complexity
philips CWE-20
2.1
2020-08-20 CVE-2020-24359 Improper Input Validation vulnerability in Hashicorp Vault-Ssh-Helper
HashiCorp vault-ssh-helper up to and including version 0.1.6 incorrectly accepted Vault-issued SSH OTPs for the subnet in which a host's network interface was located, rather than the specific IP address assigned to that interface.
network
low complexity
hashicorp CWE-20
7.5