Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2017-09-30 CVE-2017-14935 Improper Input Validation vulnerability in Pulsesecure Pulse ONE On-Premise 2.0.1649
Pulse Secure Pulse One On-Premise 2.0.1649 and below does not properly validate requests, which allows remote users to query and obtain sensitive information.
network
low complexity
pulsesecure CWE-20
7.5
2017-09-29 CVE-2017-12226 Improper Input Validation vulnerability in Cisco IOS XE
A vulnerability in the web-based Wireless Controller GUI of Cisco IOS XE Software for Cisco 5760 Wireless LAN Controllers, Cisco Catalyst 4500E Supervisor Engine 8-E (Wireless) Switches, and Cisco New Generation Wireless Controllers (NGWC) 3850 could allow an authenticated, remote attacker to elevate their privileges on an affected device.
network
low complexity
cisco CWE-20
8.8
2017-09-29 CVE-2017-12222 Improper Input Validation vulnerability in Cisco IOS XE
A vulnerability in the wireless controller manager of Cisco IOS XE could allow an unauthenticated, adjacent attacker to cause a restart of the switch and result in a denial of service (DoS) condition.
low complexity
cisco CWE-20
6.5
2017-09-28 CVE-2015-3138 Improper Input Validation vulnerability in multiple products
print-wb.c in tcpdump before 4.7.4 allows remote attackers to cause a denial of service (segmentation fault and process crash).
network
low complexity
tcpdump opensuse-project opensuse CWE-20
7.5
2017-09-25 CVE-2012-6696 Improper Input Validation vulnerability in Inspircd
inspircd in Debian before 2.0.7 does not properly handle unsigned integers.
network
low complexity
inspircd CWE-20
critical
9.8
2017-09-25 CVE-2015-7318 Improper Input Validation vulnerability in Plone
Plone 3.3.0 through 3.3.6 allows remote attackers to inject headers into HTTP responses.
network
low complexity
plone CWE-20
7.5
2017-09-25 CVE-2010-3050 Improper Input Validation vulnerability in Cisco IOS
Cisco IOS before 12.2(33)SXI allows remote authenticated users to cause a denial of service (device reboot).
network
low complexity
cisco CWE-20
6.5
2017-09-25 CVE-2010-3049 Improper Input Validation vulnerability in Cisco IOS
Cisco IOS before 12.2(33)SXI allows local users to cause a denial of service (device reboot).
local
low complexity
cisco CWE-20
5.5
2017-09-25 CVE-2017-1555 Improper Input Validation vulnerability in IBM API Connect
IBM API Connect 5.0.0.0 through 5.0.7.2 could allow an authenticated user to generate an API token when not subscribed to the application plan.
network
low complexity
ibm CWE-20
4.3
2017-09-25 CVE-2017-1551 Improper Input Validation vulnerability in IBM API Connect
IBM API Connect 5.0.0.0 through 5.0.7.2 could allow a remote attacker to hijack the clicking action of the victim.
network
low complexity
ibm CWE-20
6.1