Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2023-04-11 CVE-2023-26293 Improper Input Validation vulnerability in Siemens TIA Portal
A vulnerability has been identified in Totally Integrated Automation Portal (TIA Portal) V15 (All versions), Totally Integrated Automation Portal (TIA Portal) V16 (All versions < V16 Update 7), Totally Integrated Automation Portal (TIA Portal) V17 (All versions < V17 Update 6), Totally Integrated Automation Portal (TIA Portal) V18 (All versions < V18 Update 1).
local
low complexity
siemens CWE-20
7.3
2023-04-10 CVE-2023-26067 Improper Input Validation vulnerability in Lexmark products
Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 1 of 4).
network
high complexity
lexmark CWE-20
8.1
2023-04-10 CVE-2023-26068 Improper Input Validation vulnerability in Lexmark products
Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 2 of 4).
network
low complexity
lexmark CWE-20
critical
9.8
2023-04-10 CVE-2023-26069 Improper Input Validation vulnerability in Lexmark products
Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 3 of 4).
network
low complexity
lexmark CWE-20
critical
9.8
2023-04-10 CVE-2023-26070 Improper Input Validation vulnerability in Lexmark products
Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 4 of 4).
network
low complexity
lexmark CWE-20
critical
9.8
2023-04-07 CVE-2023-28707 Improper Input Validation vulnerability in Apache Apache-Airflow-Providers-Apache-Drill
Improper Input Validation vulnerability in Apache Software Foundation Apache Airflow Drill Provider.This issue affects Apache Airflow Drill Provider: before 2.3.2.
network
low complexity
apache CWE-20
7.5
2023-04-07 CVE-2023-28710 Improper Input Validation vulnerability in Apache Apache-Airflow-Providers-Apache-Spark
Improper Input Validation vulnerability in Apache Software Foundation Apache Airflow Spark Provider.This issue affects Apache Airflow Spark Provider: before 4.0.1.
network
low complexity
apache CWE-20
7.5
2023-04-05 CVE-2023-20103 Improper Input Validation vulnerability in Cisco Secure Network Analytics 2.1.1/7.4.1
A vulnerability in Cisco Secure Network Analytics could allow an authenticated, remote attacker to execute arbitrary code as a root user on an affected device.
network
low complexity
cisco CWE-20
7.2
2023-04-01 CVE-2023-1789 Improper Input Validation vulnerability in Firefly-Iii Firefly III
Improper Input Validation in GitHub repository firefly-iii/firefly-iii prior to 6.0.0.
network
low complexity
firefly-iii CWE-20
critical
9.8
2023-03-28 CVE-2023-24304 Improper Input Validation vulnerability in Irfanview 4.60
Improper input validation in the PDF.dll plugin of IrfanView v4.60 allows attackers to execute arbitrary code via opening a crafted PDF file.
local
low complexity
irfanview CWE-20
7.8