Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2022-04-22 CVE-2021-4212 Improper Input Validation vulnerability in Lenovo products
A potential vulnerability in the SMI callback function used in the Legacy BIOS mode driver in some Lenovo Notebook models may allow an attacker with local access and elevated privileges to execute arbitrary code.
local
low complexity
lenovo CWE-20
6.7
2022-04-21 CVE-2022-24423 Improper Input Validation vulnerability in Dell Integrated Dell Remote Access Controller 8 Firmware 2.82.82.82
Dell iDRAC8 versions prior to 2.83.83.83 contain a denial of service vulnerability.
network
low complexity
dell CWE-20
7.5
2022-04-21 CVE-2022-20783 Improper Input Validation vulnerability in Cisco Roomos and Telepresence Collaboration Endpoint
A vulnerability in the packet processing functionality of Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
network
low complexity
cisco CWE-20
7.5
2022-04-20 CVE-2022-24861 Improper Input Validation vulnerability in Databasir 1.0.1
Databasir is a team-oriented relational database model document management platform.
network
low complexity
databasir CWE-20
8.8
2022-04-19 CVE-2021-26626 Improper Input Validation vulnerability in Tobesoft Xplatform
Improper input validation vulnerability in XPLATFORM's execBrowser method can cause execute arbitrary commands.
network
low complexity
tobesoft CWE-20
8.8
2022-04-15 CVE-2022-27421 Improper Input Validation vulnerability in Chamilo LMS
Chamilo LMS v1.11.13 lacks validation on the user modification form, allowing attackers to escalate privileges to Platform Admin.
network
low complexity
chamilo CWE-20
7.2
2022-04-15 CVE-2021-44481 Improper Input Validation vulnerability in multiple products
An issue was discovered in YottaDB through r1.32 and V7.0-000.
network
low complexity
yottadb fisglobal CWE-20
7.5
2022-04-15 CVE-2021-44482 Improper Input Validation vulnerability in multiple products
An issue was discovered in YottaDB through r1.32 and V7.0-000.
network
low complexity
yottadb fisglobal CWE-20
7.5
2022-04-15 CVE-2021-44483 Improper Input Validation vulnerability in multiple products
An issue was discovered in YottaDB through r1.32 and V7.0-000.
network
low complexity
yottadb fisglobal CWE-20
7.5
2022-04-15 CVE-2022-20676 Improper Input Validation vulnerability in Cisco IOS XE
A vulnerability in the Tool Command Language (Tcl) interpreter of Cisco IOS XE Software could allow an authenticated, local attacker to escalate from privilege level 15 to root-level privileges.
local
low complexity
cisco CWE-20
6.7