Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2022-05-16 CVE-2021-33025 Improper Input Validation vulnerability in Xarrow 7.2
xArrow SCADA versions 7.2 and prior permits unvalidated registry keys to be run with application-level privileges.
local
low complexity
xarrow CWE-20
7.8
2022-05-12 CVE-2021-26351 Improper Input Validation vulnerability in AMD products
Insufficient DRAM address validation in System Management Unit (SMU) may result in a DMA (Direct Memory Access) read/write from/to invalid DRAM address that could result in denial of service.
local
low complexity
amd CWE-20
5.5
2022-05-12 CVE-2021-0126 Improper Input Validation vulnerability in Intel Manageability Commander
Improper input validation for the Intel(R) Manageability Commander before version 2.2 may allow an authenticated user to potentially enable escalation of privilege via adjacent access.
low complexity
intel CWE-20
8.0
2022-05-12 CVE-2021-0154 Improper Input Validation vulnerability in Intel products
Improper input validation in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.
local
low complexity
intel CWE-20
7.8
2022-05-12 CVE-2021-0159 Improper Input Validation vulnerability in Intel products
Improper input validation in the BIOS authenticated code module for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.
local
low complexity
intel CWE-20
7.8
2022-05-12 CVE-2021-33108 Improper Input Validation vulnerability in Intel In-Band Manageability
Improper input validation in the Intel(R) In-Band Manageability software before version 2.13.0 may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-20
6.7
2022-05-12 CVE-2022-21136 Improper Input Validation vulnerability in Intel products
Improper input validation for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable denial of service via local access.
local
low complexity
intel CWE-20
5.5
2022-05-12 CVE-2022-24382 Improper Input Validation vulnerability in Intel products
Improper input validation in firmware for some Intel(R) NUCs may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-20
6.7
2022-05-12 CVE-2022-26780 Improper Input Validation vulnerability in Inhandnetworks Ir302 Firmware 3.5.37/3.5.4
Multiple improper input validation vulnerabilities exists in the libnvram.so nvram_import functionality of InHand Networks InRouter302 V3.5.4.
network
low complexity
inhandnetworks CWE-20
8.8
2022-05-11 CVE-2021-33315 Improper Input Validation vulnerability in Trendnet products
The TRENDnet TI-PG1284i switch(hw v2.0R) prior to version 2.0.2.S0 suffers from an integer underflow vulnerability.
network
low complexity
trendnet CWE-20
critical
9.8