Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2022-04-20 CVE-2022-24861 Improper Input Validation vulnerability in Databasir 1.0.1
Databasir is a team-oriented relational database model document management platform.
network
low complexity
databasir CWE-20
8.8
2022-04-19 CVE-2021-26626 Improper Input Validation vulnerability in Tobesoft Xplatform
Improper input validation vulnerability in XPLATFORM's execBrowser method can cause execute arbitrary commands.
network
low complexity
tobesoft CWE-20
8.8
2022-04-15 CVE-2022-27421 Improper Input Validation vulnerability in Chamilo LMS
Chamilo LMS v1.11.13 lacks validation on the user modification form, allowing attackers to escalate privileges to Platform Admin.
network
low complexity
chamilo CWE-20
7.2
2022-04-15 CVE-2021-44481 Improper Input Validation vulnerability in multiple products
An issue was discovered in YottaDB through r1.32 and V7.0-000.
network
low complexity
yottadb fisglobal CWE-20
7.5
2022-04-15 CVE-2021-44482 Improper Input Validation vulnerability in multiple products
An issue was discovered in YottaDB through r1.32 and V7.0-000.
network
low complexity
yottadb fisglobal CWE-20
7.5
2022-04-15 CVE-2021-44483 Improper Input Validation vulnerability in multiple products
An issue was discovered in YottaDB through r1.32 and V7.0-000.
network
low complexity
yottadb fisglobal CWE-20
7.5
2022-04-15 CVE-2022-20676 Improper Input Validation vulnerability in Cisco IOS XE
A vulnerability in the Tool Command Language (Tcl) interpreter of Cisco IOS XE Software could allow an authenticated, local attacker to escalate from privilege level 15 to root-level privileges.
local
low complexity
cisco CWE-20
6.7
2022-04-15 CVE-2022-20679 Improper Input Validation vulnerability in Cisco IOS XE
A vulnerability in the IPSec decryption routine of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-20
7.7
2022-04-15 CVE-2022-20684 Improper Input Validation vulnerability in Cisco IOS XE
A vulnerability in Simple Network Management Protocol (SNMP) trap generation for wireless clients of Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family could allow an unauthenticated, adjacent attacker to cause an affected device to unexpectedly reload, resulting in a denial of service (DoS) condition on the device.
low complexity
cisco CWE-20
6.5
2022-04-15 CVE-2022-20761 Improper Input Validation vulnerability in Cisco IOS
A vulnerability in the integrated wireless access point (AP) packet processing of the Cisco 1000 Series Connected Grid Router (CGR1K) could allow an unauthenticated, adjacent attacker to cause a denial of service condition on an affected device.
low complexity
cisco CWE-20
6.5