Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2023-09-06 CVE-2023-39265 Improper Input Validation vulnerability in Apache Superset
Apache Superset would allow for SQLite database connections to be incorrectly registered when an attacker uses alternative driver names like sqlite+pysqlite or by using database imports.
network
low complexity
apache CWE-20
6.5
2023-09-06 CVE-2023-30712 Improper Input Validation vulnerability in Samsung Android 11.0/12.0
Improper input validation in Settings Suggestions prior to SMR Sep-2023 Release 1 allows attackers to launch arbitrary activity.
local
low complexity
samsung CWE-20
7.8
2023-09-05 CVE-2015-2202 Improper Input Validation vulnerability in multiple products
Aruba AirWave before 7.7.14.2 and 8.x before 8.0.7 allows administrative users to escalate privileges to root on the underlying OS.
network
low complexity
hp arubanetworks CWE-20
7.2
2023-09-05 CVE-2023-34317 Improper Input Validation vulnerability in Openautomationsoftware OAS Platform 18.00.0072
An improper input validation vulnerability exists in the OAS Engine User Creation functionality of Open Automation Software OAS Platform v18.00.0072.
network
low complexity
openautomationsoftware CWE-20
6.5
2023-09-05 CVE-2023-40743 Improper Input Validation vulnerability in Apache Axis
** UNSUPPORTED WHEN ASSIGNED ** When integrating Apache Axis 1.x in an application, it may not have been obvious that looking up a service through "ServiceFactory.getService" allows potentially dangerous lookup mechanisms such as LDAP.
network
low complexity
apache CWE-20
critical
9.8
2023-09-04 CVE-2022-47353 Improper Input Validation vulnerability in Google Android 11.0
In vdsp device, there is a possible system crash due to improper input validation.This could lead to local denial of service with System execution privileges needed
local
low complexity
google CWE-20
4.4
2023-09-04 CVE-2023-33914 Improper Input Validation vulnerability in Google Android 11.0/12.0/13.0
In NIA0 algorithm in Security Mode Command, there is a possible missing verification incorrect input.
network
low complexity
google CWE-20
7.5
2023-09-01 CVE-2023-4698 Improper Input Validation vulnerability in Usememos Memos
Improper Input Validation in GitHub repository usememos/memos prior to 0.13.2.
network
low complexity
usememos CWE-20
7.5
2023-08-31 CVE-2023-41746 Improper Input Validation vulnerability in Acronis Cloud Manager
Remote command execution due to improper input validation.
network
low complexity
acronis CWE-20
critical
9.8
2023-08-31 CVE-2023-41748 Improper Input Validation vulnerability in Acronis Cloud Manager
Remote command execution due to improper input validation.
network
low complexity
acronis CWE-20
critical
9.8