CWE-1284
Improper Validation of Specified Quantity in Input
The product receives input that is expected to specify a quantity (such as size or length), but it does not validate or incorrectly validates that the quantity has the required properties.
364 vulnerabilities with CWE-1284
CVE-2022-29202
MEDIUM
TensorFlow < 2.6.4 - Denial of Service via tf.ragged.constant Input Validation
CVSS 5.5
CVE-2022-29200
MEDIUM
TensorFlow <2.9.0, 2.8.1, 2.7.2, 2.6.4 - DoS
CVSS 5.5
CVE-2022-29196
MEDIUM
TensorFlow < 2.6.4 - Denial of Service via Conv3DBackpropFilterV2 Input Validation
CVSS 5.5
CVE-2022-24903
HIGH
rsyslog < 8.2204.1 - Heap Buffer Overflow via Octet-Counted Framing
CVSS 8.1
CVE-2022-28613
HIGH
ABB/Hitachi Energy RTU500 Firmware DoS via HCI Modbus TCP MBAP Header Length Validation Error
CVSS 7.5
CVE-2022-1174
MEDIUM
GitLab 13.7-14.7.6, 14.8-14.8.4, 14.9-14.9.1 - DoS via Crafted Input
CVSS 4.3
CVE-2022-24754
HIGH
PJSIP <= 2.12 - Stack-Based Buffer Overflow via Hashed Digest Credential Handling
CVSS 8.5
CVE-2022-26128
HIGH
FRRouting < 8.1 - Buffer Overflow in babel_packet_examin Function
CVSS 7.8
CVE-2022-26127
HIGH
FRRouting < 8.1 - Buffer Overflow in babel_packet_examin
CVSS 7.8
CVE-2022-26125
HIGH
FRRouting < 8.1 - Buffer Overflow in isisd/isis_tlvs.c
CVSS 7.8
CVE-2022-23635
HIGH
Istio < 1.11.7 and 1.13.0 - Unauthenticated Denial of Service via Crafted Message
CVSS 7.5
CVE-2022-25375
MEDIUM
Linux kernel <5.16.10 - Info Disclosure
CVSS 5.5
CVE-2022-23319
MEDIUM
pcf2bdf >=1.05 - Denial of Service via Crafted PCF Font File
CVSS 5.5
CVE-2022-0596
MEDIUM
Packagist microweber/microweber <1.2.11 - Info Disclosure
CVSS 4.3
CVE-2022-0214
HIGH
Custom Popup Builder < 1.3.1 - Unauthenticated Denial of Service via Unvalidated Input Length
CVSS 7.5
CVE-2022-20699
CRITICAL
KEV
Cisco RV340, RV340W, RV345, RV345P Firmware < 1.0.03.24 - Unauthenticated Remote Code Execution
CVSS 10.0
CVE-2022-23580
MEDIUM
TensorFlow < 2.5.3 - Denial of Service via Shape Inference Vector Allocation
CVSS 6.5
CVE-2022-0414
MEDIUM
Packagist dolibarr/dolibarr <16.0 - Info Disclosure
CVSS 4.3
CVE-2022-22166
MEDIUM
Juniper Junos OS 20.4-21.1 - Unauthenticated Denial of Service via Malformed BGP SR-TE Policy Tunnel Attribute
CVSS 6.5
CVE-2022-21668
HIGH
pipenv 2018.10.9-2022.1.8 - Remote Code Execution via Malicious Requirements File Comment
CVSS 8.0
CVE-2022-0174
MEDIUM
dolibarr/dolibarr - Info Disclosure
CVSS 4.3
CVE-2021-47831
HIGH
Sandboxie 5.49.7 - Denial of Service via Container Folder Input Overflow
CVSS 7.5
CVE-2021-47827
HIGH
WebSSH for iOS 14.16.10 - Denial of Service via MashREPL Input Buffer Overflow
CVSS 7.5
CVE-2021-47824
HIGH
iDailyDiary 4.30 - Denial of Service via Preferences Tab Name Field Overflow
CVSS 7.5
CVE-2021-47821
HIGH
RarmaRadio 2.72.8 - Denial of Service via Network Configuration Field Buffer Overflow
CVSS 7.5
Details
Vulnerabilities
364