Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2020-04-07 CVE-2016-11031 Improper Input Validation vulnerability in Google Android
An issue was discovered on Samsung mobile devices with KK(4.4), L(5.0/5.1), and M(6.0) software.
network
low complexity
google CWE-20
7.5
2020-04-07 CVE-2016-11053 Improper Input Validation vulnerability in Google Android
An issue was discovered on Samsung mobile devices with software through 2015-11-11 (supporting FRP/RL).
low complexity
google CWE-20
4.6
2020-04-07 CVE-2016-11052 Improper Input Validation vulnerability in Google Android 5.0/5.1
An issue was discovered on Samsung mobile devices with L(5.0/5.1) software.
local
low complexity
google CWE-20
7.8
2020-04-07 CVE-2016-11048 Improper Input Validation vulnerability in Google Android 5.0/5.1
An issue was discovered on Samsung mobile devices with L(5.0/5.1) (Spreadtrum or Marvell chipsets) software.
low complexity
google CWE-20
4.6
2020-04-07 CVE-2016-11046 Improper Input Validation vulnerability in Google Android
An issue was discovered on Samsung mobile devices with JBP(4.3), KK(4.4), and L(5.0/5.1) software.
network
low complexity
google CWE-20
7.5
2020-04-03 CVE-2020-8147 Improper Input Validation vulnerability in Utils-Extend Project Utils-Extend
Flaw in input validation in npm package utils-extend version 1.0.8 and earlier may allow prototype pollution attack that may result in remote code execution or denial of service of applications using utils-extend.
network
low complexity
utils-extend-project CWE-20
critical
9.8
2020-04-02 CVE-2018-13371 Improper Input Validation vulnerability in Fortinet Fortios
An external control of system vulnerability in FortiOS may allow an authenticated, regular user to change the routing settings of the device via connecting to the ZebOS component.
network
low complexity
fortinet CWE-20
8.8
2020-04-01 CVE-2020-10204 Improper Input Validation vulnerability in Sonatype Nexus
Sonatype Nexus Repository before 3.21.2 allows Remote Code Execution.
network
low complexity
sonatype CWE-20
7.2
2020-03-31 CVE-2020-4214 Improper Input Validation vulnerability in IBM Spectrum Protect Plus
IBM Spectrum Protect Plus 10.1.0 through 10.1.5 could allow a remote attacker to arbitrary delete a directory caused by improper validation of user-supplied input.
network
low complexity
ibm CWE-20
7.5
2020-03-30 CVE-2020-10374 Improper Input Validation vulnerability in Paessler Prtg Network Monitor
A webserver component in Paessler PRTG Network Monitor 19.2.50 to PRTG 20.1.56 allows unauthenticated remote command execution via a crafted POST request or the what parameter of the screenshot function in the Contact Support form.
network
low complexity
paessler CWE-20
critical
9.8