Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2023-01-23 CVE-2021-43448 Improper Input Validation vulnerability in Onlyoffice Server 7.0.0.49
ONLYOFFICE all versions as of 2021-11-08 is vulnerable to Improper Input Validation.
network
high complexity
onlyoffice CWE-20
5.3
2023-01-22 CVE-2023-0434 Improper Input Validation vulnerability in Pyload
Improper Input Validation in GitHub repository pyload/pyload prior to 0.5.0b3.dev40.
network
low complexity
pyload CWE-20
7.5
2023-01-20 CVE-2023-20020 Improper Input Validation vulnerability in Cisco products
A vulnerability in the Device Management Servlet application of Cisco BroadWorks Application Delivery Platform and Cisco BroadWorks Xtended Services Platform could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper input validation when parsing HTTP requests.
network
low complexity
cisco CWE-20
8.6
2023-01-20 CVE-2023-20025 Improper Input Validation vulnerability in Cisco products
A vulnerability in the web-based management interface of Cisco Small Business RV042 Series Routers could allow an unauthenticated, remote attacker to bypass authentication on the affected device. This vulnerability is due to incorrect user input validation of incoming HTTP packets.
network
low complexity
cisco CWE-20
critical
9.8
2023-01-20 CVE-2023-20026 Improper Input Validation vulnerability in Cisco products
A vulnerability in the web-based management interface of Cisco Small Business Routers RV042 Series could allow an authenticated, remote attacker to inject arbitrary commands on an affected device. This vulnerability is due to improper validation of user input fields within incoming HTTP packets.
network
low complexity
cisco CWE-20
7.2
2023-01-20 CVE-2023-20045 Improper Input Validation vulnerability in Cisco products
A vulnerability in the web-based management interface of Cisco Small Business RV160 and RV260 Series VPN Routers could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device. This vulnerability is due to insufficient validation of user input.
network
low complexity
cisco CWE-20
7.2
2023-01-18 CVE-2022-34435 Improper Input Validation vulnerability in Dell Idrac9 Firmware
Dell iDRAC9 version 6.00.02.00 and prior contain an improper input validation vulnerability in Racadm when the firmware lock-down configuration is set.
network
low complexity
dell CWE-20
4.9
2023-01-18 CVE-2022-34436 Improper Input Validation vulnerability in Dell Idrac8 Firmware
Dell iDRAC8 version 2.83.83.83 and prior contain an improper input validation vulnerability in Racadm when the firmware lock-down configuration is set.
network
low complexity
dell CWE-20
4.9
2023-01-18 CVE-2022-32490 Improper Input Validation vulnerability in Dell products
Dell BIOS contains an improper input validation vulnerability.
local
high complexity
dell CWE-20
7.8
2023-01-18 CVE-2022-34393 Improper Input Validation vulnerability in Dell products
Dell BIOS contains an improper input validation vulnerability.
local
high complexity
dell CWE-20
7.5