CWE-1287

Improper Validation of Specified Type of Input

Parent: CWE-20 - Improper Input Validation

The product receives input that is expected to be of a certain type, but it does not validate or incorrectly validates that the input is actually of the expected type.

134 vulnerabilities with CWE-1287
CVE-2025-20244 HIGH
Cisco Adaptive Security Appliance (ASA) Software - Denial of Service via Crafted HTTP Request
CVSS 7.7
CVE-2025-9042 HIGH
Rockwell Automation FLEX 5000 I/O - Denial of Service via CIP Class 32 Request Handling
CVE-2025-9041 HIGH
Rockwell Automation FLEX 5000 I/O - Denial of Service via CIP Class 32 Request Handling
CVE-2025-30027 MEDIUM
AXIS OS 12.0.0-12.5.36 - Remote Code Execution via Malicious ACAP Application
CVSS 6.7
CVE-2025-54525 HIGH
Mattermost Confluence Plugin <1.5.0 - DoS
CVSS 7.5
CVE-2025-8556 LOW
CIRCL < 1.6.1 - Session Security Compromise via FourQ Elliptic Curve Point Injection
CVSS 3.7
CVE-2025-24335 LOW
Nokia Single RAN <24R1-SR 2.1 MP - DoS
CVSS 2.0
CVE-2025-40910 MEDIUM
Net::IP::LPM 1.10 - Info Disclosure
CVSS 6.5
CVE-2025-52883 MEDIUM
Meshtastic-Android <2.5.21 - Info Disclosure
CVSS 5.3
CVE-2025-25020 MEDIUM
IBM Cloud Pak for Security 1.10.0.0-1.10.11.0 & QRadar Suite 1.10.12.0-1.11.2.0 - Authenticated DoS via API
CVSS 6.5
CVE-2025-0325 MEDIUM
AXIS OS 6.50.0-12.4.28 - Denial of Service via Guard Tour VAPIX API
CVSS 4.3
CVE-2025-40911 MEDIUM
Net::CIDR::Set <0.14 - Info Disclosure
CVSS 6.5
CVE-2025-41650 HIGH
Weidmueller IE-SW-VL05M-5TX < 3.6.32 - Unauthenticated Denial of Service via cmd Services Input Validation
CVSS 7.5
CVE-2025-20155 MEDIUM
Cisco IOS XE - Privilege Escalation
CVSS 6.0
CVE-2025-46342 HIGH
Kyverno <1.13.5-1.14.0 - Privilege Escalation
CVSS 8.5
CVE-2025-41395 MEDIUM
Mattermost 9.11.0-9.11.10, 10.4.0-10.4.2, 10.5.0 - Denial of Service via RetrospectivePost Custom Post Type
CVSS 6.5
CVE-2025-32442 HIGH
fastify 5.0.0-5.3.0 and 4.29.0 - Content-Type Validation Bypass via Altered Whitespace or Casing
CVSS 7.5
CVE-2025-3070 MEDIUM
Google Chrome < 135.0.7049.52 - Privilege Escalation via Extensions Input Validation
CVSS 6.5
CVE-2025-1558 MEDIUM
Mattermost Mobile Apps <=2.25.0 - Info Disclosure
CVSS 6.5
CVE-2025-24876 HIGH
SAP Approuter Node.js <v16.7.1 - Auth Bypass
CVSS 8.1
CVE-2025-25186 MEDIUM
Net::IMAP 0.3.2-0.3.7, 0.4.0-0.4.18, 0.5.0-0.5.5 - Denial of Service via Memory Exhaustion in Response Parser
CVSS 6.5
CVE-2025-24804 MEDIUM
Mobile Security Framework < 4.3.1 - Denial of Service via Malformed CFBundleIdentifier in Info.plist
CVSS 4.3
CVE-2025-20630 MEDIUM
Mattermost Mobile <=2.22.0 - Code Injection
CVSS 6.5
CVE-2025-20621 MEDIUM
Mattermost <10.2.0-10.2.0, <9.11.5-9.11.5, <10.0.3-10.0.3, <10.1.3-...
CVSS 6.5
CVE-2025-0476 MEDIUM
Mattermost Mobile Apps <=2.22.0 - DoS
CVSS 4.3
Details
Vulnerabilities 134