Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2021-07-14 CVE-2019-11098 Improper Input Validation vulnerability in Tianocore EDK II
Insufficient input validation in MdeModulePkg in EDKII may allow an unauthenticated user to potentially enable escalation of privilege, denial of service and/or information disclosure via physical access.
low complexity
tianocore CWE-20
6.8
2021-07-14 CVE-2021-0600 Improper Input Validation vulnerability in Google Android
In onCreate of DeviceAdminAdd.java, there is a possible way to mislead a user to activate a device admin app due to improper input validation.
local
low complexity
google CWE-20
7.8
2021-07-08 CVE-2021-1562 Improper Input Validation vulnerability in Cisco Broadworks Application Server
A vulnerability in the XSI-Actions interface of Cisco BroadWorks Application Server could allow an authenticated, remote attacker to access sensitive information on an affected system.
network
low complexity
cisco CWE-20
4.3
2021-07-08 CVE-2021-25434 Improper Input Validation vulnerability in Linux Tizen
Improper input validation vulnerability in Tizen bootloader prior to Firmware update JUL-2021 Release allows arbitrary code execution using param partition in wireless firmware download mode.
network
low complexity
linux CWE-20
critical
9.8
2021-07-08 CVE-2021-25435 Improper Input Validation vulnerability in Linux Tizen
Improper input validation vulnerability in Tizen bootloader prior to Firmware update JUL-2021 Release allows arbitrary code execution using recovery partition in wireless firmware download mode.
network
low complexity
linux CWE-20
critical
9.8
2021-07-08 CVE-2021-25436 Improper Input Validation vulnerability in Linux Tizen
Improper input validation vulnerability in Tizen FOTA service prior to Firmware update JUL-2021 Release allows arbitrary code execution via Samsung Accessory Protocol.
network
low complexity
linux CWE-20
critical
9.8
2021-07-08 CVE-2021-25441 Improper Input Validation vulnerability in Samsung AR Emoji Editor 4.4.03.5
Improper input validation vulnerability in AR Emoji Editor prior to version 4.4.03.5 in Android Q(10.0) and above allows untrusted applications to access arbitrary files with an escalated privilege.
local
low complexity
samsung CWE-20
7.8
2021-07-07 CVE-2021-31925 Improper Input Validation vulnerability in Pexip Infinity 25.0/25.3
Pexip Infinity 25.x before 25.4 has Improper Input Validation, and thus an unauthenticated remote attacker can cause a denial of service via the administrative web interface.
network
low complexity
pexip CWE-20
7.5
2021-07-07 CVE-2020-25868 Improper Input Validation vulnerability in Pexip Infinity
Pexip Infinity 22.x through 24.x before 24.2 has Improper Input Validation for call setup.
network
low complexity
pexip CWE-20
7.5
2021-07-07 CVE-2021-26036 Improper Input Validation vulnerability in Joomla Joomla!
An issue was discovered in Joomla! 2.5.0 through 3.9.27.
network
low complexity
joomla CWE-20
7.5