Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2021-12-17 CVE-2021-37863 Improper Input Validation vulnerability in Mattermost Server
Mattermost 6.0 and earlier fails to sufficiently validate parameters during post creation, which allows authenticated attackers to cause a client-side crash of the web application via a maliciously crafted post.
network
low complexity
mattermost CWE-20
5.7
2021-12-15 CVE-2021-0921 Improper Input Validation vulnerability in Google Android 11.0
In ParsingPackageImpl of ParsingPackageImpl.java, there is a possible parcel serialization/deserialization mismatch due to improper input validation.
local
low complexity
google CWE-20
7.8
2021-12-15 CVE-2021-1020 Improper Input Validation vulnerability in Google Android 12.0
In snoozeNotification of NotificationListenerService.java, there is a possible way to disable notification for an arbitrary user due to improper input validation.
local
low complexity
google CWE-20
7.3
2021-12-15 CVE-2021-1021 Improper Input Validation vulnerability in Google Android 12.0
In snoozeNotificationInt of NotificationManagerService.java, there is a possible way to disable notification for an arbitrary user due to improper input validation.
local
low complexity
google CWE-20
7.3
2021-12-15 CVE-2021-4117 Improper Input Validation vulnerability in Yetiforce Customer Relationship Management
yetiforcecrm is vulnerable to Business Logic Errors
network
low complexity
yetiforce CWE-20
4.3
2021-12-15 CVE-2021-20330 Improper Input Validation vulnerability in Mongodb
An attacker with basic CRUD permissions on a replicated collection can run the applyOps command with specially malformed oplog entries, resulting in a potential denial of service on secondaries.
network
low complexity
mongodb CWE-20
6.5
2021-12-15 CVE-2021-4111 Improper Input Validation vulnerability in Yetiforce Customer Relationship Management
yetiforcecrm is vulnerable to Business Logic Errors
network
low complexity
yetiforce CWE-20
4.3
2021-12-14 CVE-2021-42068 Improper Input Validation vulnerability in SAP 3D Visual Enterprise Viewer 9
When a user opens a manipulated GIF (.gif) file received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application.
local
low complexity
sap CWE-20
3.3
2021-12-14 CVE-2021-42070 Improper Input Validation vulnerability in SAP 3D Visual Enterprise Viewer 9
When a user opens manipulated Jupiter Tessellation (.jt) file received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application
local
low complexity
sap CWE-20
3.3
2021-12-13 CVE-2021-39932 Improper Input Validation vulnerability in Gitlab
An issue has been discovered in GitLab CE/EE affecting all versions starting from 11.0 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5 before 14.5.2.
network
low complexity
gitlab CWE-20
4.3