CWE-1286

Improper Validation of Syntactic Correctness of Input

Parent: CWE-20 - Improper Input Validation

The product receives input that is expected to be well-formed - i.e., to comply with a certain syntax - but it does not validate or incorrectly validates that the input complies with the syntax.

67 vulnerabilities with CWE-1286
CVE-2025-24347 MEDIUM
ctrlX OS - Network Configuration File Manipulation
CVSS 6.5
CVE-2025-24346 HIGH
ctrlX OS - Authenticated Path Traversal
CVSS 7.5
CVE-2025-24345 MEDIUM
ctrlX OS - Info Disclosure
CVSS 6.3
CVE-2025-46419 MEDIUM
Westermo WeOS <5.23.0 - DoS
CVSS 5.9
CVE-2025-20644 MEDIUM
Mediatek Nr15 - Denial of Service
CVSS 6.5
CVE-2025-22868 HIGH
Product <Version - Memory Corruption
CVSS 7.5
CVE-2025-24812 MEDIUM
SIMATIC S7-1200 - Info Disclosure
CVSS 6.5
CVE-2025-0638 HIGH
Routinator - Use After Free
CVSS 7.5
CVE-2024-51983 HIGH
Web Services < unknown - DoS
CVSS 7.5
CVE-2024-51982 HIGH
Brother Printer Devices - Denial of Service via Malformed PJL Command
CVSS 7.5
CVE-2024-52362 MEDIUM
IBM App Connect Enterprise Certified Container - DoS
CVSS 4.3
CVE-2024-8772 MEDIUM
Axis VAPIX API - Auth Bypass
CVSS 4.3
CVE-2024-8160 LOW
Axis ftptest.cgi - Command Injection
CVSS 3.8
CVE-2024-6763 LOW
Eclipse Jetty - SSRF
CVSS 3.7
CVE-2024-6173 MEDIUM
Guard Tour VAPIX API - DoS
CVSS 6.5
CVE-2024-7954 CRITICAL
SPIP - RCE
CVSS 9.8
CVE-2024-39542 HIGH
Juniper Junos - Denial of Service
CVSS 7.5
CVE-2024-6284 HIGH
nftables <0.2.0 - Info Disclosure
CVSS 7.3
CVE-2024-26507 HIGH
FinalWire AIRDA Extreme <7.00.6700 - Privilege Escalation
CVSS 7.8
CVE-2024-21598 HIGH
Juniper Junos - Denial of Service
CVSS 7.5
CVE-2024-3384 HIGH
Palo Alto Networks PAN-OS - RCE
CVSS 7.5
CVE-2024-0218 HIGH
Nozomi Networks Guardian - DoS
CVSS 7.5
CVE-2024-29041 MEDIUM
Openjsf Express < 4.19.2 - Open Redirect
CVSS 6.1
CVE-2024-21616 HIGH
Juniper Junos - Denial of Service
CVSS 7.5
CVE-2024-21595 HIGH
Juniper Junos - Denial of Service
CVSS 7.5
Details
Vulnerabilities 67