Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2023-05-27 CVE-2023-2942 Improper Input Validation vulnerability in Open-Emr Openemr
Improper Input Validation in GitHub repository openemr/openemr prior to 7.0.1.
network
low complexity
open-emr CWE-20
8.1
2023-05-27 CVE-2023-32688 Improper Input Validation vulnerability in Parseplatform Parse Server Push Adapter
parse-server-push-adapter is the official Push Notification adapter for Parse Server.
network
low complexity
parseplatform CWE-20
7.5
2023-05-26 CVE-2023-21514 Improper Input Validation vulnerability in Samsung Galaxy Store 4.5.32.4/4.5.36.4/4.5.41.8
Improper scheme validation from InstantPlay Deeplink in Galaxy Store prior to version 4.5.49.8 allows attackers to execute javascript API to install APK from Galaxy Store.
network
low complexity
samsung CWE-20
8.8
2023-05-26 CVE-2023-32323 Improper Input Validation vulnerability in Matrix Synapse
Synapse is an open-source Matrix homeserver written and maintained by the Matrix.org Foundation.
network
low complexity
matrix CWE-20
4.3
2023-05-23 CVE-2023-30440 Improper Input Validation vulnerability in IBM Powervm Hypervisor
IBM PowerVM Hypervisor FW860.00 through FW860.B3, FW950.00 through FW950.70, FW1010.00 through FW1010.50, FW1020.00 through FW1020.30, and FW1030.00 through FW1030.10 could allow a local attacker with control a partition that has been assigned SRIOV virtual function (VF) to cause a denial of service to a peer partition or arbitrary data corruption.
local
low complexity
ibm CWE-20
7.9
2023-05-22 CVE-2023-28649 Improper Input Validation vulnerability in Snapone Orvc
The Hub in the Snap One OvrC cloud platform is a device used to centralize and manage nested devices connected to it.
network
low complexity
snapone CWE-20
7.5
2023-05-18 CVE-2023-20171 Improper Input Validation vulnerability in Cisco Identity Services Engine 3.1/3.2
Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated attacker to delete or read arbitrary files on the underlying operating system.
network
low complexity
cisco CWE-20
6.5
2023-05-18 CVE-2023-20172 Improper Input Validation vulnerability in Cisco Identity Services Engine 3.1/3.2
Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated attacker to delete or read arbitrary files on the underlying operating system.
network
low complexity
cisco CWE-20
4.9
2023-05-18 CVE-2023-20182 Improper Input Validation vulnerability in Cisco DNA Center
Multiple vulnerabilities in the API of Cisco DNA Center Software could allow an authenticated, remote attacker to read information from a restricted container, enumerate user information, or execute arbitrary commands in a restricted container as the root user.
network
low complexity
cisco CWE-20
8.8
2023-05-15 CVE-2023-20704 Improper Input Validation vulnerability in Google Android 12.0/13.0
In apu, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-20
5.5