Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2020-04-15 CVE-2020-3161 Improper Input Validation vulnerability in Cisco products
A vulnerability in the web server for Cisco IP Phones could allow an unauthenticated, remote attacker to execute code with root privileges or cause a reload of an affected IP phone, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-20
critical
9.8
2020-04-15 CVE-2019-12520 Improper Input Validation vulnerability in multiple products
An issue was discovered in Squid through 4.7 and 5.
network
low complexity
squid-cache canonical debian CWE-20
7.5
2020-04-15 CVE-2020-3953 Improper Input Validation vulnerability in VMWare Vrealize LOG Insight
Cross Site Scripting (XSS) vulnerability exists in VMware vRealize Log Insight prior to 8.1.0 due to improper Input validation.
network
low complexity
vmware CWE-20
4.8
2020-04-15 CVE-2020-11536 Improper Input Validation vulnerability in Onlyoffice Document Server 5.5.0
An issue was discovered in ONLYOFFICE Document Server 5.5.0.
network
low complexity
onlyoffice CWE-20
critical
9.8
2020-04-15 CVE-2020-11534 Improper Input Validation vulnerability in Onlyoffice Document Server 5.5.0
An issue was discovered in ONLYOFFICE Document Server 5.5.0.
network
low complexity
onlyoffice CWE-20
critical
9.8
2020-04-15 CVE-2020-0984 Improper Input Validation vulnerability in Microsoft Autoupdate
An elevation of privilege vulnerability exists when the Microsoft AutoUpdate (MAU) application for Mac improperly validates updates before executing them, aka 'Microsoft (MAU) Office Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-20
7.8
2020-04-15 CVE-2020-0910 Improper Input Validation vulnerability in Microsoft products
A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Windows Hyper-V Remote Code Execution Vulnerability'.
low complexity
microsoft CWE-20
8.4
2020-04-14 CVE-2020-8324 Improper Input Validation vulnerability in Lenovo System Interface Foundation
A vulnerability was reported in LenovoAppScenarioPluginSystem for Lenovo System Interface Foundation prior to version 1.2.184.31 that could allow unsigned DLL files to be executed.
local
low complexity
lenovo CWE-20
5.5
2020-04-14 CVE-2020-4151 Improper Input Validation vulnerability in IBM Qradar Security Information and Event Manager 7.3.0/7.3.1/7.3.2
IBM QRadar SIEM 7.3.0 through 7.3.3 could allow an authenticated attacker to perform unauthorized actions due to improper input validation.
network
low complexity
ibm CWE-20
6.5
2020-04-13 CVE-2020-3126 Improper Input Validation vulnerability in Cisco Webex Meetings Server T39.3
vulnerability within the Multimedia Viewer feature of Cisco Webex Meetings could allow an authenticated, remote attacker to bypass security protections.
network
low complexity
cisco CWE-20
3.5