Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2021-10-28 CVE-2021-22467 Improper Input Validation vulnerability in Huawei Harmonyos 2.0
A component of the HarmonyOS has a Improper Input Validation vulnerability.
local
low complexity
huawei CWE-20
5.5
2021-10-28 CVE-2021-22491 Improper Input Validation vulnerability in Huawei Emui and Magic UI
There is an Input verification vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service availability.
network
low complexity
huawei CWE-20
7.5
2021-10-27 CVE-2021-34783 Improper Input Validation vulnerability in Cisco products
A vulnerability in the software-based SSL/TLS message handler of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-20
7.5
2021-10-27 CVE-2021-34790 Improper Input Validation vulnerability in Cisco products
Multiple vulnerabilities in the Application Level Gateway (ALG) for the Network Address Translation (NAT) feature of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass the ALG and open unauthorized connections with a host located behind the ALG.
network
low complexity
cisco CWE-20
5.3
2021-10-27 CVE-2021-34791 Improper Input Validation vulnerability in Cisco products
Multiple vulnerabilities in the Application Level Gateway (ALG) for the Network Address Translation (NAT) feature of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass the ALG and open unauthorized connections with a host located behind the ALG.
network
low complexity
cisco CWE-20
5.3
2021-10-27 CVE-2020-7867 Improper Input Validation vulnerability in Helpu Helpuviewer 2018.5.21.0
An improper input validation vulnerability in Helpu solution could allow a local attacker to arbitrary file creation and execution without click file transfer menu.
local
low complexity
helpu CWE-20
7.8
2021-10-26 CVE-2021-26607 Improper Input Validation vulnerability in Tobesoft Nexacro
An Improper input validation in execDefaultBrowser method of NEXACRO17 allows a remote attacker to execute arbitrary command on affected systems.
network
low complexity
tobesoft CWE-20
critical
9.8
2021-10-22 CVE-2021-0651 Improper Input Validation vulnerability in Google Android 10.0/11.0/9.0
In loadLabel of PackageItemInfo.java, there is a possible way to DoS a device by having a long label in an app due to incorrect input validation.
local
low complexity
google CWE-20
5.5
2021-10-21 CVE-2021-34736 Improper Input Validation vulnerability in Cisco Unified Computing System
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Software could allow an unauthenticated, remote attacker to cause the web-based management interface to unexpectedly restart.
network
low complexity
cisco CWE-20
7.5
2021-10-20 CVE-2021-35611 Improper Input Validation vulnerability in Oracle Sales Offline
Vulnerability in the Oracle Sales Offline product of Oracle E-Business Suite (component: Offline Template).
network
low complexity
oracle CWE-20
4.3