CWE-1284
Improper Validation of Specified Quantity in Input
The product receives input that is expected to specify a quantity (such as size or length), but it does not validate or incorrectly validates that the quantity has the required properties.
321 vulnerabilities with CWE-1284
CVE-2022-21208
HIGH
node-opcua < 2.74.0 - Denial of Service via Unlimited Chunk Reception
CVSS 7.5
CVE-2022-37134
CRITICAL
D-Link DIR-816 A2_v1.10CNB04 - Buffer Overflow via form2Wan.cgi l2tp_usrname Parameter
CVSS 9.8
CVE-2022-2868
MEDIUM
libtiff - Denial of Service via Crafted File in tiffcrop
CVSS 5.5
CVE-2022-2845
HIGH
vim/vim <9.0.0218 - Info Disclosure
CVSS 7.8
CVE-2022-25793
HIGH
Autodesk 3ds Max 2020-2022 < 2020.3.6 - Stack-based Buffer Overflow via ActionScript Byte Code Parsing
CVSS 7.8
CVE-2022-35928
HIGH
AES Crypt 3.11 - Buffer Overflow via Command-Line Password Prompt
CVSS 8.4
CVE-2022-22072
HIGH
Qualcomm APQ8009 Firmware - Buffer Overflow via NDP Application Information Length
CVSS 7.8
CVE-2022-29202
MEDIUM
TensorFlow < 2.6.4 - Denial of Service via tf.ragged.constant Input Validation
CVSS 5.5
CVE-2022-29200
MEDIUM
TensorFlow <2.9.0, 2.8.1, 2.7.2, 2.6.4 - DoS
CVSS 5.5
CVE-2022-29196
MEDIUM
TensorFlow < 2.6.4 - Denial of Service via Conv3DBackpropFilterV2 Input Validation
CVSS 5.5
CVE-2022-24903
HIGH
rsyslog < 8.2204.1 - Heap Buffer Overflow via Octet-Counted Framing
CVSS 8.1
CVE-2022-28613
HIGH
ABB/Hitachi Energy RTU500 Firmware DoS via HCI Modbus TCP MBAP Header Length Validation Error
CVSS 7.5
CVE-2022-1174
MEDIUM
GitLab 13.7-14.7.6, 14.8-14.8.4, 14.9-14.9.1 - DoS via Crafted Input
CVSS 4.3
CVE-2022-24754
HIGH
PJSIP <= 2.12 - Stack-Based Buffer Overflow via Hashed Digest Credential Handling
CVSS 8.5
CVE-2022-26128
HIGH
FRRouting < 8.1 - Buffer Overflow in babel_packet_examin Function
CVSS 7.8
CVE-2022-26127
HIGH
FRRouting < 8.1 - Buffer Overflow in babel_packet_examin
CVSS 7.8
CVE-2022-26125
HIGH
FRRouting < 8.1 - Buffer Overflow in isisd/isis_tlvs.c
CVSS 7.8
CVE-2022-23635
HIGH
Istio < 1.11.7 and 1.13.0 - Unauthenticated Denial of Service via Crafted Message
CVSS 7.5
CVE-2022-25375
MEDIUM
Linux kernel <5.16.10 - Info Disclosure
CVSS 5.5
CVE-2022-23319
MEDIUM
pcf2bdf >=1.05 - Denial of Service via Crafted PCF Font File
CVSS 5.5
CVE-2022-0596
MEDIUM
Packagist microweber/microweber <1.2.11 - Info Disclosure
CVSS 4.3
CVE-2022-0214
HIGH
Custom Popup Builder < 1.3.1 - Unauthenticated Denial of Service via Unvalidated Input Length
CVSS 7.5
CVE-2022-20699
CRITICAL
KEV
Cisco RV340, RV340W, RV345, RV345P Firmware < 1.0.03.24 - Unauthenticated Remote Code Execution
CVSS 10.0
CVE-2022-23580
MEDIUM
TensorFlow < 2.5.3 - Denial of Service via Shape Inference Vector Allocation
CVSS 6.5
CVE-2022-0414
MEDIUM
Packagist dolibarr/dolibarr <16.0 - Info Disclosure
CVSS 4.3
Details
Vulnerabilities
321