Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2023-10-13 CVE-2023-44204 Improper Input Validation vulnerability in Juniper Junos and Junos OS Evolved
An Improper Validation of Syntactic Correctness of Input vulnerability in Routing Protocol Daemon (rpd) Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, network based attacker to cause a Denial of Service (DoS). When a malformed BGP UPDATE packet is received over an established BGP session, the rpd crashes and restarts. This issue affects both eBGP and iBGP implementations. This issue affects: Juniper Networks Junos OS * 21.4 versions prior to 21.4R3-S4; * 22.1 versions prior to 22.1R3-S3; * 22.2 versions prior to 22.2R3-S2; * 22.3 versions prior to 22.3R2-S2, 22.3R3; * 22.4 versions prior to 22.4R2-S1, 22.4R3; * 23.2 versions prior to 23.2R1, 23.2R2; Juniper Networks Junos OS Evolved * 21.4 versions prior to 21.4R3-S5-EVO; * 22.1 versions prior to 22.1R3-S3-EVO; * 22.2 versions prior to 22.2R3-S3-EVO; * 22.3 versions prior to 22.3R2-S2-EVO; * 22.4 versions prior to 22.4R3-EVO; * 23.2 versions prior to 23.2R2-EVO;
low complexity
juniper CWE-20
6.5
2023-10-11 CVE-2023-44110 Improper Input Validation vulnerability in Huawei Emui and Harmonyos
Out-of-bounds access vulnerability in the audio module.Successful exploitation of this vulnerability may affect availability.
low complexity
huawei CWE-20
4.3
2023-10-10 CVE-2023-45648 Improper Input Validation vulnerability in multiple products
Improper Input Validation vulnerability in Apache Tomcat.Tomcat from 11.0.0-M1 through 11.0.0-M11, from 10.1.0-M1 through 10.1.13, from 9.0.0-M1 through 9.0.81 and from 8.5.0 through 8.5.93 did not correctly parse HTTP trailer headers.
network
low complexity
apache debian CWE-20
5.3
2023-10-05 CVE-2023-32485 Improper Input Validation vulnerability in Dell Smartfabric Storage Software 1.0.0
Dell SmartFabric Storage Software version 1.3 and lower contain an improper input validation vulnerability.
network
low complexity
dell CWE-20
critical
9.8
2023-10-05 CVE-2023-43073 Improper Input Validation vulnerability in Dell Smartfabric Storage Software 1.0.0
Dell SmartFabric Storage Software v1.4 (and earlier) contains an Improper Input Validation vulnerability in RADIUS configuration.
network
low complexity
dell CWE-20
6.5
2023-10-04 CVE-2023-36619 Improper Input Validation vulnerability in Unify Session Border Controller 10R3.01.03
Atos Unify OpenScape Session Border Controller through V10 R3.01.03 allows execution of administrative scripts by unauthenticated users.
network
low complexity
unify CWE-20
critical
9.8
2023-10-04 CVE-2023-30690 Improper Input Validation vulnerability in Samsung Android 11.0/12.0
Improper input validation vulnerability in Duo prior to SMR Oct-2023 Release 1 allows local attackers to launch privileged activities.
local
low complexity
samsung CWE-20
7.8
2023-10-02 CVE-2023-3768 Improper Input Validation vulnerability in Ingeteam products
Incorrect data input validation vulnerability, which could allow an attacker with access to the network to implement fuzzing techniques that would allow him to gain knowledge about specially crafted packets that would create a DoS condition through the MMS protocol when initiating communication, achieving a complete system reboot of the device and its services.
network
low complexity
ingeteam CWE-20
7.5
2023-09-27 CVE-2023-20231 Improper Input Validation vulnerability in Cisco IOS XE
A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to perform an injection attack against an affected device. This vulnerability is due to insufficient input validation.
network
low complexity
cisco CWE-20
8.8
2023-09-21 CVE-2023-5104 Improper Input Validation vulnerability in Xgenecloud Nocodb
Improper Input Validation in GitHub repository nocodb/nocodb prior to 0.96.0.
network
low complexity
xgenecloud CWE-20
6.5