Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2020-04-22 CVE-2018-21122 Improper Input Validation vulnerability in Netgear products
Certain NETGEAR devices are affected by denial of service.
low complexity
netgear CWE-20
6.5
2020-04-22 CVE-2017-18763 Improper Input Validation vulnerability in Netgear products
Certain NETGEAR devices are affected by incorrect configuration of security settings.
low complexity
netgear CWE-20
6.5
2020-04-22 CVE-2018-21115 Improper Input Validation vulnerability in Netgear Xr500 Firmware 2.3.2.22
NETGEAR XR500 devices before 2.3.2.32 are affected by remote code execution by unauthenticated attackers.
low complexity
netgear CWE-20
8.8
2020-04-22 CVE-2017-18778 Improper Input Validation vulnerability in Netgear products
Certain NETGEAR devices are affected by incorrect configuration of security settings.
local
low complexity
netgear CWE-20
5.5
2020-04-21 CVE-2018-21141 Improper Input Validation vulnerability in Netgear products
Certain NETGEAR devices are affected by denial of service.
low complexity
netgear CWE-20
4.5
2020-04-21 CVE-2018-21140 Improper Input Validation vulnerability in Netgear D3600 Firmware and D6000 Firmware
Certain NETGEAR devices are affected by incorrect configuration of security settings.
low complexity
netgear CWE-20
6.5
2020-04-21 CVE-2017-18799 Improper Input Validation vulnerability in Netgear products
Certain NETGEAR devices are affected by incorrect configuration of security settings.
network
low complexity
netgear CWE-20
7.5
2020-04-21 CVE-2017-18798 Improper Input Validation vulnerability in Netgear products
Certain NETGEAR devices are affected by incorrect configuration of security settings.
local
low complexity
netgear CWE-20
6.2
2020-04-21 CVE-2017-18803 Improper Input Validation vulnerability in Netgear R7800 Firmware 1.0.1.30/1.0.2.16/1.0.2.28
NETGEAR R7800 devices before 1.0.2.30 are affected by incorrect configuration of security settings.
local
low complexity
netgear CWE-20
6.2
2020-04-21 CVE-2020-1757 Improper Input Validation vulnerability in Redhat products
A flaw was found in all undertow-2.x.x SP1 versions prior to undertow-2.0.30.SP1, all undertow-1.x.x and undertow-2.x.x versions prior to undertow-2.1.0.Final, where the Servlet container causes servletPath to normalize incorrectly by truncating the path after semicolon which may lead to an application mapping resulting in the security bypass.
network
low complexity
redhat CWE-20
8.1