Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2017-04-02 CVE-2016-8762 Improper Input Validation vulnerability in Huawei P8 Lite Firmware, P9 Firmware and P9 Lite Firmware
The TrustZone driver in Huawei P9 phones with software Versions earlier than EVA-AL10C00B352 and P9 Lite with software VNS-L21C185B130 and earlier versions and P8 Lite with software ALE-L02C636B150 and earlier versions has an input validation vulnerability, which allows attackers to cause the system to restart.
local
low complexity
huawei CWE-20
5.0
2017-04-02 CVE-2016-8758 Improper Input Validation vulnerability in Huawei Mate 8 Firmware
ION memory management module in Huawei Mate8 phones with software NXT-AL10C00B561 and earlier versions, NXT-CL10C00B561 and earlier versions, NXT-DL10C00B561 and earlier versions, NXT-TL10C00B561 and earlier versions allows attackers to cause a denial of service (restart).
local
low complexity
huawei CWE-20
5.5
2017-04-02 CVE-2016-8756 Improper Input Validation vulnerability in Huawei Mate 8 Firmware
ION memory management module in Huawei Mate 8 phones with software NXT-AL10C00B197 and earlier versions, NXT-DL10C00B197 and earlier versions, NXT-TL10C00B197 and earlier versions, NXT-CL10C00B197 and earlier versions allows attackers to cause a denial of service (restart).
local
low complexity
huawei CWE-20
5.5
2017-04-02 CVE-2016-8275 Improper Input Validation vulnerability in Huawei Anyoffice V200R006C00
Huawei AnyOffice V200R006C00 could allow an authenticated, remote attacker to cause the software to deny services by uploading an XML bomb.
network
low complexity
huawei CWE-20
6.5
2017-04-02 CVE-2015-8670 Improper Input Validation vulnerability in Huawei Logcenter V100R001C10
Huawei LogCenter V100R001C10 could allow an authenticated attacker to add abnormal device information to the log collection module, causing denial of service.
network
low complexity
huawei CWE-20
6.5
2017-04-02 CVE-2015-7847 Improper Input Validation vulnerability in Huawei E3272S Firmware
Huawei MBB (Mobile Broadband) product E3272s with software versions earlier than E3272s-153TCPU-V200R002B491D09SP00C00 has a Denial of Service (DoS) vulnerability.
local
low complexity
huawei CWE-20
5.5
2017-04-02 CVE-2015-7844 Improper Input Validation vulnerability in Huawei Fusionaccess V100R005C10/V100R005C20
Huawei FusionAccess with software V100R005C10,V100R005C20 could allow attackers to craft and send a malformed HDP protocol packet to cause the virtual cloud desktop to be displaying an error and not usable.
network
low complexity
huawei CWE-20
7.5
2017-04-02 CVE-2014-8572 Improper Input Validation vulnerability in Huawei products
Huawei AC6605 with software V200R001C00; AC6605 with software V200R002C00; ACU with software V200R001C00; ACU with software V200R002C00; S2300, S3300, S2700, S3700 with software V100R006C05 and earlier versions; S5300, S5700, S6300, S6700 with software V100R006, V200R001, V200R002, V200R003, V200R005C00SPC300 and earlier versions; S7700, S9300, S9300E, S9700 with software V100R006, V200R001, V200R002, V200R003, V200R005C00SPC300 and earlier versions could allow remote attackers to send a special SSH packet to the VRP device to cause a denial of service.
network
low complexity
huawei CWE-20
7.5
2017-04-02 CVE-2017-6974 Improper Input Validation vulnerability in Apple mac OS X 10.12.3
An issue was discovered in certain Apple products.
local
low complexity
apple CWE-20
5.5
2017-04-02 CVE-2017-2479 Improper Input Validation vulnerability in Apple products
An issue was discovered in certain Apple products.
network
low complexity
apple CWE-20
6.5