Vulnerabilities > Improper Validation of Specified Quantity in Input

DATE CVE VULNERABILITY TITLE RISK
2025-04-21 CVE-2025-43970 Improper Validation of Specified Quantity in Input vulnerability in Osrg Gobgp
An issue was discovered in GoBGP before 3.35.0.
network
low complexity
osrg CWE-1284
5.3
2025-04-21 CVE-2025-43972 Improper Validation of Specified Quantity in Input vulnerability in Osrg Gobgp
An issue was discovered in GoBGP before 3.35.0.
network
low complexity
osrg CWE-1284
7.5
2025-04-21 CVE-2025-43964 Improper Validation of Specified Quantity in Input vulnerability in Libraw
In LibRaw before 0.21.4, tag 0x412 processing in phase_one_correct in decoders/load_mfbacks.cpp does not enforce minimum w0 and w1 values.
network
low complexity
libraw CWE-1284
critical
9.8
2025-04-18 CVE-2025-29784 Improper Validation of Specified Quantity in Input vulnerability in Namelessmc Nameless
NamelessMC is a free, easy to use & powerful website software for Minecraft servers.
network
low complexity
namelessmc CWE-1284
7.5
2024-12-29 CVE-2024-56716 Improper Validation of Specified Quantity in Input vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: netdevsim: prevent bad user input in nsim_dev_health_break_write() If either a zero count or a large one is provided, kernel can crash.
local
low complexity
linux CWE-1284
5.5
2024-12-12 CVE-2024-52901 Improper Validation of Specified Quantity in Input vulnerability in IBM Infosphere Information Server 11.7
IBM InfoSphere Information Server 11.7 could allow an authenticated user to GUI to not load or stop working due to improper input validation.
network
low complexity
ibm CWE-1284
6.5
2024-11-27 CVE-2024-9369 Improper Validation of Specified Quantity in Input vulnerability in Google Chrome
Insufficient data validation in Mojo in Google Chrome prior to 129.0.6668.89 allowed a remote attacker who had compromised the renderer process to perform an out of bounds memory write via a crafted HTML page.
network
low complexity
google CWE-1284
critical
9.6
2024-10-03 CVE-2024-8508 Improper Validation of Specified Quantity in Input vulnerability in multiple products
NLnet Labs Unbound up to and including version 1.21.0 contains a vulnerability when handling replies with very large RRsets that it needs to perform name compression for.
network
low complexity
nlnetlabs debian CWE-1284
5.3
2024-09-18 CVE-2024-8887 Improper Validation of Specified Quantity in Input vulnerability in Circutor Q-Smt Firmware 1.0.4
CIRCUTOR Q-SMT in its firmware version 1.0.4, could be affected by a denial of service (DoS) attack if an attacker with access to the web service bypasses the authentication mechanisms on the login page, allowing the attacker to use all the functionalities implemented at web level that allow interacting with the device.
network
low complexity
circutor CWE-1284
8.6
2024-09-13 CVE-2024-31416 Improper Validation of Specified Quantity in Input vulnerability in Eaton Foreseer Electrical Power Monitoring System
The Eaton Foreseer software provides multiple customizable input fields for the users to configure parameters in the tool like alarms, reports, etc.
network
low complexity
eaton CWE-1284
6.5