CWE-1286

Improper Validation of Syntactic Correctness of Input

Parent: CWE-20 - Improper Input Validation

The product receives input that is expected to be well-formed - i.e., to comply with a certain syntax - but it does not validate or incorrectly validates that the input complies with the syntax.

60 vulnerabilities with CWE-1286
CVE-2025-59785 HIGH
2N Access Commander <3.4.2 - Auth Bypass
CVSS 7.2
CVE-2025-13327 MEDIUM
uv - Code Injection
CVSS 6.3
CVE-2026-21527 MEDIUM
Microsoft Exchange Server - Info Disclosure
CVSS 6.5
CVE-2026-25513 HIGH
Facturascripts < 2025.81 - SQL Injection
CVSS 8.8
CVE-2026-0663 MEDIUM
M-Files Server <26.1.15632.3 - DoS
CVSS 4.9
CVE-2026-21917 HIGH
Juniper Junos - Denial of Service
CVSS 7.5
CVE-2025-67492 MEDIUM
Weblate <5.15 - Info Disclosure
CVSS 5.3
CVE-2025-13033 HIGH
Email Parsing Library - SSRF
CVSS 7.5
CVE-2025-41719 HIGH
Webserver <unknown> - Memory Corruption
CVSS 8.8
CVE-2025-55085 HIGH
NextX Duo <6.4.4 - Buffer Overflow
CVSS 7.5
CVE-2025-11573 HIGH
Nuget Amazon.iondotnet < 1.3.2 - Denial of Service
CVSS 7.5
CVE-2025-36262 MEDIUM
IBM Planning Analytics Local <2.0.106, <2.1.13 - Info Disclosure
CVSS 4.9
CVE-2025-10954 MEDIUM
github.com/nyaruka/phonenumbers <1.2.2 - Improper Validation
CVSS 5.3
CVE-2025-54995 MEDIUM
Sangoma Asterisk < 18.26.4 - Denial of Service
CVSS 6.5
CVE-2025-25007 MEDIUM
Microsoft Exchange Server - Info Disclosure
CVSS 5.3
CVE-2024-51983 HIGH
Web Services < unknown - DoS
CVSS 7.5
CVE-2024-51982 HIGH
Printer Device <unknown> - DoS
CVSS 7.5
CVE-2025-30415 HIGH
Acronis Cyber Protect Cloud Agent <40077 - DoS
CVSS 7.5
CVE-2025-43878 MEDIUM
F5OS-C/A - Privilege Escalation
CVSS 6.0
CVE-2025-24348 MEDIUM
ctrlX OS - Wireless Network Configuration File Manipulation
CVSS 5.4
CVE-2025-24347 MEDIUM
ctrlX OS - Network Configuration File Manipulation
CVSS 6.5
CVE-2025-24346 HIGH
ctrlX OS - Authenticated Path Traversal
CVSS 7.5
CVE-2025-24345 MEDIUM
ctrlX OS - Info Disclosure
CVSS 6.3
CVE-2025-46419 MEDIUM
Westermo WeOS <5.23.0 - DoS
CVSS 5.9
CVE-2024-52362 MEDIUM
IBM App Connect Enterprise Certified Container - DoS
CVSS 4.3
Details
Vulnerabilities 60