Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2023-10-31 CVE-2023-3676 Improper Input Validation vulnerability in Kubernetes
A security issue was discovered in Kubernetes where a user that can create pods on Windows nodes may be able to escalate to admin privileges on those nodes.
network
low complexity
kubernetes CWE-20
8.8
2023-10-31 CVE-2023-3955 Improper Input Validation vulnerability in Kubernetes
A security issue was discovered in Kubernetes where a user that can create pods on Windows nodes may be able to escalate to admin privileges on those nodes.
network
low complexity
kubernetes CWE-20
8.8
2023-10-30 CVE-2023-21391 Improper Input Validation vulnerability in Google Android
In Messaging, there is a possible way to disable the messaging application due to improper input validation.
network
low complexity
google CWE-20
7.5
2023-10-27 CVE-2023-46289 Improper Input Validation vulnerability in Rockwellautomation Factorytalk View
Rockwell Automation FactoryTalk View Site Edition insufficiently validates user input, which could potentially allow threat actors to send malicious data bringing the product offline.
network
low complexity
rockwellautomation CWE-20
7.5
2023-10-26 CVE-2023-5624 Improper Input Validation vulnerability in Tenable Nessus Network Monitor
Under certain conditions, Nessus Network Monitor was found to not properly enforce input validation.
network
low complexity
tenable CWE-20
7.2
2023-10-17 CVE-2021-29913 Improper Input Validation vulnerability in IBM Security Verify Privilege On-Premises
IBM Security Verify Privilege On-Premise 11.5 could allow an authenticated user to obtain sensitive information or perform unauthorized actions due to improper input validation.
network
low complexity
ibm CWE-20
7.1
2023-10-17 CVE-2022-22384 Improper Input Validation vulnerability in IBM Security Verify Privilege On-Premises
IBM Security Verify Privilege On-Premises 11.5 could allow an attacker to modify messages returned from the server due to hazardous input validation.
network
low complexity
ibm CWE-20
4.3
2023-10-13 CVE-2023-44204 Improper Input Validation vulnerability in Juniper Junos and Junos OS Evolved
An Improper Validation of Syntactic Correctness of Input vulnerability in Routing Protocol Daemon (rpd) Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, network based attacker to cause a Denial of Service (DoS). When a malformed BGP UPDATE packet is received over an established BGP session, the rpd crashes and restarts. This issue affects both eBGP and iBGP implementations. This issue affects: Juniper Networks Junos OS * 21.4 versions prior to 21.4R3-S4; * 22.1 versions prior to 22.1R3-S3; * 22.2 versions prior to 22.2R3-S2; * 22.3 versions prior to 22.3R2-S2, 22.3R3; * 22.4 versions prior to 22.4R2-S1, 22.4R3; * 23.2 versions prior to 23.2R1, 23.2R2; Juniper Networks Junos OS Evolved * 21.4 versions prior to 21.4R3-S5-EVO; * 22.1 versions prior to 22.1R3-S3-EVO; * 22.2 versions prior to 22.2R3-S3-EVO; * 22.3 versions prior to 22.3R2-S2-EVO; * 22.4 versions prior to 22.4R3-EVO; * 23.2 versions prior to 23.2R2-EVO;
low complexity
juniper CWE-20
6.5
2023-10-11 CVE-2023-44110 Improper Input Validation vulnerability in Huawei Emui and Harmonyos
Out-of-bounds access vulnerability in the audio module.Successful exploitation of this vulnerability may affect availability.
low complexity
huawei CWE-20
4.3
2023-10-04 CVE-2023-36619 Improper Input Validation vulnerability in Unify Session Border Controller 10R3.01.03
Atos Unify OpenScape Session Border Controller through V10 R3.01.03 allows execution of administrative scripts by unauthenticated users.
network
low complexity
unify CWE-20
critical
9.8