Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2023-05-09 CVE-2021-46775 Improper Input Validation vulnerability in AMD products
Improper input validation in ABL may enable an attacker with physical access, to perform arbitrary memory overwrites, potentially leading to a loss of integrity and code execution.
low complexity
amd CWE-20
6.8
2023-05-09 CVE-2022-23818 Improper Input Validation vulnerability in AMD products
Insufficient input validation on the model specific register: VM_HSAVE_PA may potentially lead to loss of SEV-SNP guest memory integrity.
network
low complexity
amd CWE-20
7.5
2023-05-08 CVE-2023-27961 Improper Input Validation vulnerability in Apple products
Multiple validation issues were addressed with improved input sanitization.
local
low complexity
apple CWE-20
5.5
2023-05-08 CVE-2023-28200 Improper Input Validation vulnerability in Apple Iphone OS and Macos
A validation issue was addressed with improved input sanitization.
local
low complexity
apple CWE-20
5.5
2023-05-07 CVE-2023-31047 Improper Input Validation vulnerability in multiple products
In Django 3.2 before 3.2.19, 4.x before 4.1.9, and 4.2 before 4.2.1, it was possible to bypass validation when using one form field to upload multiple files.
network
low complexity
djangoproject fedoraproject CWE-20
critical
9.8
2023-05-04 CVE-2023-21498 Improper Input Validation vulnerability in Samsung Android 13.0
Improper input validation vulnerability in setPartnerTAInfo in mPOS TUI trustlet prior to SMR May-2023 Release 1 allows local attackers to overwrite the trustlet memory.
local
low complexity
samsung CWE-20
7.8
2023-05-04 CVE-2023-21501 Improper Input Validation vulnerability in Samsung Android 13.0
Improper input validation vulnerability in mPOS fiserve trustlet prior to SMR May-2023 Release 1 allows local attackers to execute arbitrary code.
local
low complexity
samsung CWE-20
7.8
2023-05-04 CVE-2023-21502 Improper Input Validation vulnerability in Samsung Android 12.0/13.0
Improper input validation vulnerability in FactoryTest application prior to SMR May-2023 Release 1 allows local attackers to get privilege escalation via debugging commands.
local
low complexity
samsung CWE-20
7.8
2023-05-04 CVE-2023-26125 Improper Input Validation vulnerability in Gin-Gonic GIN
Versions of the package github.com/gin-gonic/gin before 1.9.0 are vulnerable to Improper Input Validation by allowing an attacker to use a specially crafted request via the X-Forwarded-Prefix header, potentially leading to cache poisoning. **Note:** Although this issue does not pose a significant threat on its own it can serve as an input vector for other more impactful vulnerabilities.
network
low complexity
gin-gonic CWE-20
7.3
2023-04-26 CVE-2022-25273 Improper Input Validation vulnerability in Drupal
Drupal core's form API has a vulnerability where certain contributed or custom modules' forms may be vulnerable to improper input validation.
network
low complexity
drupal CWE-20
7.5