Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2020-06-03 CVE-2020-3322 Improper Input Validation vulnerability in Cisco Webex Network Recording Player and Webex Player
A vulnerability in Cisco Webex Network Recording Player and Cisco Webex Player for Microsoft Windows could allow an attacker to cause a process crash resulting in a Denial of service (DoS) condition for the player application on an affected system.
local
low complexity
cisco CWE-20
3.3
2020-06-03 CVE-2020-3321 Improper Input Validation vulnerability in Cisco Webex Network Recording Player and Webex Player
A vulnerability in Cisco Webex Network Recording Player and Cisco Webex Player for Microsoft Windows could allow an attacker to cause a process crash resulting in a Denial of service (DoS) condition for the player application on an affected system.
local
low complexity
cisco CWE-20
3.3
2020-06-03 CVE-2020-3319 Improper Input Validation vulnerability in Cisco Webex Network Recording Player and Webex Player
A vulnerability in Cisco Webex Network Recording Player and Cisco Webex Player for Microsoft Windows could allow an attacker to cause a process crash resulting in a Denial of service (DoS) condition for the player application on an affected system.
local
low complexity
cisco CWE-20
3.3
2020-06-02 CVE-2020-3623 Improper Input Validation vulnerability in Qualcomm Sm8250 Firmware and Sxr2130 Firmware
kernel failure due to load failures while running v1 path directly via kernel in Snapdragon Mobile in SM8250, SXR2130
local
low complexity
qualcomm CWE-20
7.8
2020-06-02 CVE-2020-13401 Improper Input Validation vulnerability in multiple products
An issue was discovered in Docker Engine before 19.03.11.
network
high complexity
docker fedoraproject debian broadcom CWE-20
6.0
2020-06-01 CVE-2019-15709 Improper Input Validation vulnerability in Fortinet Fortiap-S, Fortiap-U and Fortiap-W2
An improper input validation in FortiAP-S/W2 6.2.0 to 6.2.2, 6.0.5 and below, FortiAP-U 6.0.1 and below CLI admin console may allow unauthorized administrators to overwrite system files via specially crafted tcpdump commands in the CLI.
network
low complexity
fortinet CWE-20
6.5
2020-06-01 CVE-2020-12062 Improper Input Validation vulnerability in Openbsd Openssh 8.2
The scp client in OpenSSH 8.2 incorrectly sends duplicate responses to the server upon a utimes system call failure, which allows a malicious unprivileged user on the remote server to overwrite arbitrary files in the client's download directory by creating a crafted subdirectory anywhere on the remote server.
network
low complexity
openbsd CWE-20
7.5
2020-06-01 CVE-2020-6868 Improper Input Validation vulnerability in ZTE F680 Firmware Zxhnf680V9.0.10P1N6
There is an input validation vulnerability in a PON terminal product of ZTE, which supports the creation of WAN connections through WEB management pages.
low complexity
zte CWE-20
6.5
2020-05-29 CVE-2020-13634 Improper Input Validation vulnerability in Youhua Windows Master 7.99.13.604
In Windows Master (aka Windows Optimization Master) 7.99.13.604, the driver file (WoptiHWDetect.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0xF1002558
local
low complexity
youhua CWE-20
7.8
2020-05-28 CVE-2020-4231 Improper Input Validation vulnerability in IBM Security Identity Governance and Intelligence 5.2.6
IBM Security Identity Governance and Intelligence 5.2.6 could allow an authenticated user to perform unauthorized commands due to hazardous input validation.
network
low complexity
ibm CWE-20
6.5