Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2017-01-30 CVE-2016-2517 Improper Input Validation vulnerability in NTP
NTP before 4.2.8p7 and 4.3.x before 4.3.92 allows remote attackers to cause a denial of service (prevent subsequent authentication) by leveraging knowledge of the controlkey or requestkey and sending a crafted packet to ntpd, which changes the value of trustedkey, controlkey, or requestkey.
network
high complexity
ntp CWE-20
5.3
2017-01-30 CVE-2016-2516 Improper Input Validation vulnerability in NTP
NTP before 4.2.8p7 and 4.3.x before 4.3.92, when mode7 is enabled, allows remote attackers to cause a denial of service (ntpd abort) by using the same IP address multiple times in an unconfig directive.
network
high complexity
ntp CWE-20
5.3
2017-01-30 CVE-2015-8138 Improper Input Validation vulnerability in NTP
NTP before 4.2.8p6 and 4.3.x before 4.3.90 allows remote attackers to bypass the origin timestamp validation via a packet with an origin timestamp set to zero.
network
low complexity
ntp CWE-20
5.3
2017-01-30 CVE-2016-10176 Improper Input Validation vulnerability in Netgear Wnr2000V5 Firmware 1.0.0.34
The NETGEAR WNR2000v5 router allows an administrator to perform sensitive actions by invoking the apply.cgi URL on the web server of the device.
network
low complexity
netgear CWE-20
critical
9.8
2017-01-27 CVE-2017-3323 Improper Input Validation vulnerability in Oracle Mysql Cluster
Vulnerability in the MySQL Cluster component of Oracle MySQL (subcomponent: Cluster: General).
network
high complexity
oracle CWE-20
3.7
2017-01-27 CVE-2017-3321 Improper Input Validation vulnerability in Oracle Mysql Cluster
Vulnerability in the MySQL Cluster component of Oracle MySQL (subcomponent: Cluster: General).
network
high complexity
oracle CWE-20
3.7
2017-01-27 CVE-2017-3316 Improper Input Validation vulnerability in Oracle VM Virtualbox 5.0.30/5.1.12
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: GUI).
network
low complexity
oracle CWE-20
8.4
2017-01-27 CVE-2017-3283 Improper Input Validation vulnerability in Oracle Partner Management
Vulnerability in the Oracle Partner Management component of Oracle E-Business Suite (subcomponent: User Interface).
network
low complexity
oracle CWE-20
4.7
2017-01-27 CVE-2017-3280 Improper Input Validation vulnerability in Oracle Partner Management
Vulnerability in the Oracle Partner Management component of Oracle E-Business Suite (subcomponent: User Interface).
network
low complexity
oracle CWE-20
4.7
2017-01-27 CVE-2017-3273 Improper Input Validation vulnerability in Oracle Mysql
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DDL).
network
low complexity
oracle CWE-20
6.5