Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2022-06-07 CVE-2022-30713 Improper Input Validation vulnerability in Google Android 10.0/11.0/12.0
Improper validation vulnerability in LSOItemData prior to SMR Jun-2022 Release 1 allows attackers to launch certain activities.
network
low complexity
google CWE-20
critical
9.1
2022-06-07 CVE-2022-30719 Improper Input Validation vulnerability in Google Android 10.0/11.0/12.0
Improper input validation check logic vulnerability in libsmkvextractor prior to SMR Jun-2022 Release 1 allows attackers to trigger crash.
network
low complexity
google CWE-20
5.3
2022-06-07 CVE-2022-30720 Improper Input Validation vulnerability in Google Android 10.0/11.0/12.0
Improper input validation check logic vulnerability in libsmkvextractor prior to SMR Jun-2022 Release 1 allows attackers to trigger crash.
network
low complexity
google CWE-20
5.3
2022-06-07 CVE-2022-30721 Improper Input Validation vulnerability in Google Android 10.0/11.0/12.0
Improper input validation check logic vulnerability in libsmkvextractor prior to SMR Jun-2022 Release 1 allows attackers to trigger crash.
network
low complexity
google CWE-20
5.3
2022-06-06 CVE-2022-28224 Improper Input Validation vulnerability in Tigera Calico Enterprise and Calico OS
Clusters using Calico (version 3.22.1 and below), Calico Enterprise (version 3.12.0 and below), may be vulnerable to route hijacking with the floating IP feature.
network
low complexity
tigera CWE-20
5.5
2022-06-02 CVE-2022-25163 Improper Input Validation vulnerability in Mitsubishi products
Improper Input Validation vulnerability in Mitsubishi Electric MELSEC-Q Series QJ71E71-100 first 5 digits of serial number "24061" or prior, Mitsubishi Electric MELSEC-L series LJ71E71-100 first 5 digits of serial number "24061" or prior and Mitsubishi Electric MELSEC iQ-R Series RD81MES96N firmware version "08" or prior allows a remote unauthenticated attacker to cause a denial of service (DoS) condition or execute malicious code on the target products by sending specially crafted packets.
network
low complexity
mitsubishi CWE-20
critical
9.8
2022-05-31 CVE-2022-31013 Improper Input Validation vulnerability in Chat Server Project Chat Server
Chat Server is the chat server for Vartalap, an open-source messaging application.
network
low complexity
chat-server-project CWE-20
critical
9.8
2022-05-26 CVE-2022-24417 Improper Input Validation vulnerability in Dell products
Dell BIOS contains an improper input validation vulnerability.
local
low complexity
dell CWE-20
6.7
2022-05-26 CVE-2022-24418 Improper Input Validation vulnerability in Dell products
Dell BIOS contains an improper input validation vulnerability.
local
low complexity
dell CWE-20
6.7
2022-05-24 CVE-2022-26531 Improper Input Validation vulnerability in Zyxel products
Multiple improper input validation flaws were identified in some CLI commands of Zyxel USG/ZyWALL series firmware versions 4.09 through 4.71, USG FLEX series firmware versions 4.50 through 5.21, ATP series firmware versions 4.32 through 5.21, VPN series firmware versions 4.30 through 5.21, NSG series firmware versions 1.00 through 1.33 Patch 4, NXC2500 firmware version 6.10(AAIG.3) and earlier versions, NAP203 firmware version 6.25(ABFA.7) and earlier versions, NWA50AX firmware version 6.25(ABYW.5) and earlier versions, WAC500 firmware version 6.30(ABVS.2) and earlier versions, and WAX510D firmware version 6.30(ABTF.2) and earlier versions, that could allow a local authenticated attacker to cause a buffer overflow or a system crash via a crafted payload.
local
low complexity
zyxel CWE-20
7.8