Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2022-07-22 CVE-2022-20909 Improper Input Validation vulnerability in Cisco Nexus Dashboard
Multiple vulnerabilities in Cisco Nexus Dashboard could allow an authenticated, local attacker to elevate privileges on an affected device.
local
low complexity
cisco CWE-20
6.7
2022-07-22 CVE-2022-20913 Improper Input Validation vulnerability in Cisco Nexus Dashboard
A vulnerability in Cisco Nexus Dashboard could allow an authenticated, remote attacker to write arbitrary files on an affected device.
network
low complexity
cisco CWE-20
6.5
2022-07-20 CVE-2022-22214 Improper Input Validation vulnerability in Juniper Junos
An Improper Input Validation vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent attacker to cause a PFE crash and thereby a Denial of Service (DoS).
low complexity
juniper CWE-20
6.5
2022-07-20 CVE-2022-34866 Improper Input Validation vulnerability in YRL Passage Drive and Passage Drive for BOX
Passage Drive versions v1.4.0 to v1.5.1.0 and Passage Drive for Box version v1.0.0 contain an insufficient data verification vulnerability for interprocess communication.
local
low complexity
yrl CWE-20
7.8
2022-07-18 CVE-2022-35404 Improper Input Validation vulnerability in Zohocorp products
ManageEngine Password Manager Pro 12100 and prior and OPManager 126100 and prior are vulnerable to unauthorized file and directory creation on a server machine.
network
low complexity
zohocorp CWE-20
8.2
2022-07-17 CVE-2022-26655 Improper Input Validation vulnerability in Pexip Infinity 27.0/27.1/27.2
Pexip Infinity 27.x before 27.3 has Improper Input Validation.
network
low complexity
pexip CWE-20
7.5
2022-07-13 CVE-2022-34758 Improper Input Validation vulnerability in Schneider-Electric Easergy P5 Firmware 01.401.101/01.401.102
A CWE-20: Improper Input Validation vulnerability exists that could cause the device watchdog function to be disabled if the attacker had access to privileged user credentials.
network
low complexity
schneider-electric CWE-20
4.9
2022-07-12 CVE-2022-32248 Improper Input Validation vulnerability in SAP S/4Hana
Due to missing input validation in the Manage Checkbooks component of SAP S/4HANA - version 101, 102, 103, 104, 105, 106, an attacker could insert or edit the value of an existing field in the database.
network
low complexity
sap CWE-20
5.3
2022-07-12 CVE-2022-35171 Improper Input Validation vulnerability in SAP 3D Visual Enterprise Viewer 9
When a user opens manipulated JPEG 2000 (.jp2, jp2k.x3d) files received from untrusted sources in SAP 3D Visual Enterprise Viewer, the application crashes and becomes temporarily unavailable to the user until restart of the application.
local
low complexity
sap CWE-20
5.5
2022-07-12 CVE-2022-33703 Improper Input Validation vulnerability in Google Android 10.0/11.0/12.0
Improper validation vulnerability in CACertificateInfo prior to SMR Jul-2022 Release 1 allows attackers to launch certain activities.
local
low complexity
google CWE-20
7.8