Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2017-03-11 CVE-2017-6466 Improper Input Validation vulnerability in F-Secure Software Updater 2.20
F-Secure Software Updater 2.20, as distributed in several F-Secure products, downloads installation packages over plain http and does not perform file integrity validation after download.
network
high complexity
f-secure CWE-20
8.1
2017-03-10 CVE-2017-5872 Improper Input Validation vulnerability in Unisys Clearpath MCP 57.1/58.1/59.1
The TCP/IP networking module in Unisys ClearPath MCP systems with TCP-IP-SW 57.1 before 57.152, 58.1 before 58.142, or 59.1 before 59.172, when running a TLS 1.2 service, allows remote attackers to cause a denial of service (network connectivity disruption) via a client hello with a signature_algorithms extension above those defined in RFC 5246, which triggers a full memory dump.
network
low complexity
unisys CWE-20
7.5
2017-03-08 CVE-2017-0499 Improper Input Validation vulnerability in Google Android
A denial of service vulnerability in Audioserver could enable a local malicious application to cause a device hang or reboot.
local
low complexity
google CWE-20
5.5
2017-03-08 CVE-2017-0488 Improper Input Validation vulnerability in Google Android
A denial of service vulnerability in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot.
local
low complexity
google CWE-20
5.5
2017-03-08 CVE-2017-0484 Improper Input Validation vulnerability in Google Android
A denial of service vulnerability in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot.
local
low complexity
google CWE-20
5.5
2017-03-08 CVE-2017-0483 Improper Input Validation vulnerability in Google Android
A denial of service vulnerability in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot.
local
low complexity
google CWE-20
5.5
2017-03-08 CVE-2017-0475 Improper Input Validation vulnerability in Google Android
An elevation of privilege vulnerability in the recovery verifier could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
low complexity
google CWE-20
7.8
2017-03-08 CVE-2017-0463 Improper Input Validation vulnerability in Linux Kernel 3.10/3.18
An elevation of privilege vulnerability in the Qualcomm networking driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
linux CWE-20
7.0
2017-03-08 CVE-2017-0458 Improper Input Validation vulnerability in Linux Kernel 3.18
An elevation of privilege vulnerability in the Qualcomm camera driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
linux CWE-20
7.0
2017-03-07 CVE-2016-9727 Improper Input Validation vulnerability in IBM products
IBM QRadar 7.2 could allow a remote authenticated attacker to execute arbitrary commands on the system.
network
high complexity
ibm CWE-20
8.5