Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2022-12-16 CVE-2022-42534 Improper Input Validation vulnerability in Google Android
In trusty_ffa_mem_reclaim of shared-mem-smcall.c, there is a possible privilege escalation due to improper input validation.
local
low complexity
google CWE-20
7.8
2022-12-16 CVE-2021-28655 Improper Input Validation vulnerability in Apache Zeppelin
The improper Input Validation vulnerability in "”Move folder to Trash” feature of Apache Zeppelin allows an attacker to delete the arbitrary files.
network
low complexity
apache CWE-20
6.5
2022-12-15 CVE-2022-46701 Improper Input Validation vulnerability in Apple products
The issue was addressed with improved bounds checks.
local
low complexity
apple CWE-20
7.8
2022-12-15 CVE-2022-46768 Improper Input Validation vulnerability in Zabbix web Service Report Generation and Zabbix-Agent2
Arbitrary file read vulnerability exists in Zabbix Web Service Report Generation, which listens on the port 10053.
network
high complexity
zabbix CWE-20
5.9
2022-12-15 CVE-2022-4504 Improper Input Validation vulnerability in Open-Emr Openemr
Improper Input Validation in GitHub repository openemr/openemr prior to 7.0.0.2.
network
low complexity
open-emr CWE-20
7.5
2022-12-13 CVE-2021-40365 Improper Input Validation vulnerability in Siemens products
Affected devices don't process correctly certain special crafted packets sent to port 102/tcp, which could allow an attacker to cause a denial of service in the device.
network
low complexity
siemens CWE-20
7.5
2022-12-13 CVE-2022-20470 Improper Input Validation vulnerability in Google Android
In bindRemoteViewsService of AppWidgetServiceImpl.java, there is a possible way to bypass background activity launch due to improper input validation.
local
low complexity
google CWE-20
7.8
2022-12-13 CVE-2022-43723 Improper Input Validation vulnerability in Siemens Sicam Pas/Pqs 7.0/8.00
A vulnerability has been identified in SICAM PAS/PQS (All versions < V7.0), SICAM PAS/PQS (All versions >= 7.0 < V8.06).
network
low complexity
siemens CWE-20
7.5
2022-12-13 CVE-2022-46363 Improper Input Validation vulnerability in Apache CXF
A vulnerability in Apache CXF before versions 3.5.5 and 3.4.10 allows an attacker to perform a remote directory listing or code exfiltration.
network
low complexity
apache CWE-20
7.5
2022-12-07 CVE-2022-45113 Improper Input Validation vulnerability in Sixapart Movable Type
Improper validation of syntactic correctness of input vulnerability exist in Movable Type series.
network
low complexity
sixapart CWE-20
6.5