Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2022-08-12 CVE-2022-20314 Improper Input Validation vulnerability in Google Android 13.0
In KeyChain, there is a possible spoof keychain chooser activity request due to improper input validation.
local
low complexity
google CWE-20
6.7
2022-08-12 CVE-2022-20338 Improper Input Validation vulnerability in Google Android 13.0
In HierarchicalUri.readFrom of Uri.java, there is a possible way to craft a malformed Uri object due to improper input validation.
local
low complexity
google CWE-20
3.3
2022-08-11 CVE-2021-22289 Improper Input Validation vulnerability in Br-Automation Studio
Improper Input Validation vulnerability in the project upload mechanism in B&R Automation Studio version >=4.0 may allow an unauthenticated network attacker to execute code.
network
low complexity
br-automation CWE-20
critical
9.8
2022-08-11 CVE-2022-20241 Improper Input Validation vulnerability in Google Android 13.0.0
In Messaging, there is a possible way to attach a private file to an SMS message due to improper input validation.
local
low complexity
google CWE-20
3.3
2022-08-10 CVE-2022-20350 Improper Input Validation vulnerability in Google Android
In onCreate of NotificationAccessConfirmationActivity.java, there is a possible way to trick the victim to grant notification access to the wrong app due to improper input validation.
local
low complexity
google CWE-20
5.5
2022-08-10 CVE-2022-20353 Improper Input Validation vulnerability in Google Android
In onSaveRingtone of DefaultRingtonePreference.java, there is a possible inappropriate file read due to improper input validation.
local
low complexity
google CWE-20
5.5
2022-08-10 CVE-2022-20355 Improper Input Validation vulnerability in Google Android
In get of PacProxyService.java, there is a possible system service crash due to improper input validation.
local
low complexity
google CWE-20
5.5
2022-08-10 CVE-2022-20356 Improper Input Validation vulnerability in Google Android 11.0/12.0/12.1
In shouldAllowFgsWhileInUsePermissionLocked of ActiveServices.java, there is a possible way to start foreground service from background due to improper input validation.
local
low complexity
google CWE-20
7.8
2022-08-10 CVE-2022-20842 Improper Input Validation vulnerability in Cisco products
Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an unauthenticated, remote attacker to execute arbitrary code or cause a denial of service (DoS) condition on an affected device.
network
low complexity
cisco CWE-20
critical
9.8
2022-08-10 CVE-2022-20841 Improper Input Validation vulnerability in Cisco products
Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an unauthenticated, remote attacker to execute arbitrary code or cause a denial of service (DoS) condition on an affected device.
network
high complexity
cisco CWE-20
critical
9.0