Vulnerabilities > Improper Validation of Specified Quantity in Input

DATE CVE VULNERABILITY TITLE RISK
2022-12-26 CVE-2022-37312 Improper Validation of Specified Quantity in Input vulnerability in Open-Xchange Appsuite
OX App Suite through 7.10.6 has Uncontrolled Resource Consumption via a large request body containing a redirect URL to the deferrer servlet.
network
low complexity
open-xchange CWE-1284
5.3
2022-12-16 CVE-2022-20543 Improper Validation of Specified Quantity in Input vulnerability in Google Android 13.0
In multiple locations, there is a possible display crash loop due to improper input validation.
local
low complexity
google CWE-1284
2.3
2022-12-13 CVE-2021-0934 Improper Validation of Specified Quantity in Input vulnerability in Google Android
In findAllDeAccounts of AccountsDb.java, there is a possible denial of service due to resource exhaustion.
local
low complexity
google CWE-1284
5.5
2022-12-13 CVE-2021-44693 Improper Validation of Specified Quantity in Input vulnerability in Siemens products
Affected devices don't process correctly certain special crafted packets sent to port 102/tcp, which could allow an attacker to cause a denial of service in the device.
network
low complexity
siemens CWE-1284
4.9
2022-12-13 CVE-2022-20488 Improper Validation of Specified Quantity in Input vulnerability in Google Android
In NotificationChannel of NotificationChannel.java, there is a possible failure to persist permissions settings due to resource exhaustion.
local
low complexity
google CWE-1284
7.8
2022-12-13 CVE-2022-20491 Improper Validation of Specified Quantity in Input vulnerability in Google Android
In NotificationChannel of NotificationChannel.java, there is a possible failure to persist permissions settings due to resource exhaustion.
local
low complexity
google CWE-1284
7.8
2022-12-13 CVE-2022-46143 Improper Validation of Specified Quantity in Input vulnerability in Siemens products
Affected devices do not check the TFTP blocksize correctly.
network
low complexity
siemens CWE-1284
2.7
2022-12-12 CVE-2022-20686 Improper Validation of Specified Quantity in Input vulnerability in Cisco products
Multiple vulnerabilities in the Link Layer Discovery Protocol (LLDP) functionality of Cisco ATA 190 Series Analog Telephone Adapter firmware could allow an unauthenticated, remote attacker to execute arbitrary code on an affected device and cause the LLDP service to restart. These vulnerabilities are due to missing length validation of certain LLDP packet header fields.
network
low complexity
cisco CWE-1284
5.3
2022-12-12 CVE-2022-20687 Improper Validation of Specified Quantity in Input vulnerability in Cisco products
Multiple vulnerabilities in the Link Layer Discovery Protocol (LLDP) functionality of Cisco ATA 190 Series Analog Telephone Adapter firmware could allow an unauthenticated, remote attacker to execute arbitrary code on an affected device and cause the LLDP service to restart. These vulnerabilities are due to missing length validation of certain LLDP packet header fields.
network
low complexity
cisco CWE-1284
5.3
2022-12-12 CVE-2022-20688 Improper Validation of Specified Quantity in Input vulnerability in Cisco products
A vulnerability in the Cisco Discovery Protocol functionality of Cisco ATA 190 Series Analog Telephone Adapter firmware could allow an unauthenticated, remote attacker to execute arbitrary code on an affected device and cause Cisco Discovery Protocol service to restart. This vulnerability is due to missing length validation of certain Cisco Discovery Protocol packet header fields.
network
low complexity
cisco CWE-1284
5.3