Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2017-06-16 CVE-2015-3254 Improper Input Validation vulnerability in Apache Thrift
The client libraries in Apache Thrift before 0.9.3 might allow remote authenticated users to cause a denial of service (infinite recursion) via vectors involving the skip function.
network
low complexity
apache CWE-20
6.5
2017-06-15 CVE-2017-9675 Improper Input Validation vulnerability in Dlink Dir-605L Firmware 2.08B01
On D-Link DIR-605L devices, firmware before 2.08UIBetaB01.bin allows an unauthenticated GET request to trigger a reboot.
network
low complexity
dlink CWE-20
7.5
2017-06-15 CVE-2017-8555 Improper Input Validation vulnerability in Microsoft Edge
Microsoft Edge in Microsoft Windows 10 1703 allows an attacker to trick a user into loading a page with malicious content when the Edge Content Security Policy (CSP) fails to properly validate certain specially crafted documents, aka "Microsoft Edge Security Feature Bypass Vulnerability".
network
low complexity
microsoft CWE-20
4.3
2017-06-15 CVE-2017-8545 Improper Input Validation vulnerability in Microsoft Outlook 2016
A spoofing vulnerability exists in when Microsoft Outlook for Mac does not sanitize html properly, aka "Microsoft Outlook for Mac Spoofing Vulnerability".
network
low complexity
microsoft CWE-20
6.5
2017-06-14 CVE-2017-7676 Improper Input Validation vulnerability in Apache Ranger
Policy resource matcher in Apache Ranger before 0.7.1 ignores characters after '*' wildcard character - like my*test, test*.txt.
network
low complexity
apache CWE-20
critical
9.8
2017-06-13 CVE-2017-7369 Improper Input Validation vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, an array index in an ALSA routine is not properly validating potentially leading to kernel stack corruption.
local
low complexity
google CWE-20
7.8
2017-06-13 CVE-2017-7366 Improper Input Validation vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, a KGSL ioctl was not validating all of its parameters.
local
low complexity
google CWE-20
5.5
2017-06-13 CVE-2016-10338 Improper Input Validation vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, there was an issue related to RPMB processing.
local
low complexity
google CWE-20
7.8
2017-06-13 CVE-2016-10337 Improper Input Validation vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, some validation of secure applications was not being performed.
local
low complexity
google CWE-20
5.5
2017-06-13 CVE-2015-9033 Improper Input Validation vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, a QTEE system call fails to validate a pointer.
local
low complexity
google CWE-20
7.8