Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2023-09-15 CVE-2023-4680 Improper Input Validation vulnerability in Hashicorp Vault
HashiCorp Vault and Vault Enterprise transit secrets engine allowed authorized users to specify arbitrary nonces, even with convergent encryption disabled.
network
high complexity
hashicorp CWE-20
6.8
2023-09-12 CVE-2023-39208 Improper Input Validation vulnerability in Zoom
Improper input validation in Zoom Desktop Client for Linux before version 5.15.10 may allow an unauthenticated user to conduct a denial of service via network access.
network
low complexity
zoom CWE-20
7.5
2023-09-12 CVE-2023-29332 Improper Input Validation vulnerability in Microsoft Azure Kubernetes Service
Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability
network
low complexity
microsoft CWE-20
critical
9.8
2023-09-06 CVE-2023-30712 Improper Input Validation vulnerability in Samsung Android 11.0/12.0
Improper input validation in Settings Suggestions prior to SMR Sep-2023 Release 1 allows attackers to launch arbitrary activity.
local
low complexity
samsung CWE-20
7.8
2023-09-05 CVE-2015-2202 Improper Input Validation vulnerability in multiple products
Aruba AirWave before 7.7.14.2 and 8.x before 8.0.7 allows administrative users to escalate privileges to root on the underlying OS.
network
low complexity
hp arubanetworks CWE-20
7.2
2023-09-04 CVE-2022-47353 Improper Input Validation vulnerability in Google Android 11.0
In vdsp device, there is a possible system crash due to improper input validation.This could lead to local denial of service with System execution privileges needed
local
low complexity
google CWE-20
4.4
2023-09-04 CVE-2023-33914 Improper Input Validation vulnerability in Google Android 11.0/12.0/13.0
In NIA0 algorithm in Security Mode Command, there is a possible missing verification incorrect input.
network
low complexity
google CWE-20
7.5
2023-08-31 CVE-2023-41746 Improper Input Validation vulnerability in Acronis Cloud Manager
Remote command execution due to improper input validation.
network
low complexity
acronis CWE-20
critical
9.8
2023-08-31 CVE-2023-41748 Improper Input Validation vulnerability in Acronis Cloud Manager
Remote command execution due to improper input validation.
network
low complexity
acronis CWE-20
critical
9.8
2023-08-25 CVE-2023-40797 Improper Input Validation vulnerability in Tenda Ac23 Firmware 16.03.07.45Cn
In Tenda AC23 v16.03.07.45_cn, the sub_4781A4 function does not validate the parameters entered by the user, resulting in a post-authentication stack overflow vulnerability.
network
low complexity
tenda CWE-20
8.8