CWE-20

High likelihood

Improper Input Validation

Parent: CWE-707 - Improper Neutralization

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

12,467 vulnerabilities with CWE-20
CVE-2022-47894 MEDIUM
Apache Zeppelin SAP 0.8.0-0.10.1 - Improper Input Validation
CVSS 5.3
CVE-2022-45469 LOW
Intel Unison Software < 20.14.5683.0 - Authenticated Privilege Escalation via Local Access
CVSS 2.2
CVE-2022-33945 HIGH
Intel(R) Server board & Intel(R) Server System BIOS - Privilege Esc...
CVSS 8.2
CVE-2022-24379 HIGH
Intel Server Board M70KLP2SB & System M70KLP4S2UHH Firmware < 01.04.0022 Privilege Escalation
CVSS 7.5
CVE-2022-23820 HIGH
AMD SMM Firmware - Code Execution via Communication Buffer Validation Failure
CVSS 7.5
CVE-2022-48459 MEDIUM
Android - Local Denial of Service via TeleService Input Validation
CVSS 5.5
CVE-2022-48458 MEDIUM
Android - Denial of Service via TeleService Input Validation
CVSS 5.5
CVE-2022-48457 MEDIUM
Android - Denial of Service via TeleService Input Validation
CVSS 5.5
CVE-2022-4574 MEDIUM
ThinkPad - Local Privilege Escalation
CVSS 6.7
CVE-2022-4573 MEDIUM
ThinkPad X1 Fold Gen 1 - Code Injection
CVSS 6.7
CVE-2022-48189 MEDIUM
Lenovo ThinkPad E/L Series Firmware - Authenticated Arbitrary Code Execution via SMM Driver Input Validation
CVSS 6.7
CVE-2022-3429 MEDIUM
Lenovo GM265DN GM266DNS G263DNS Firmware - Denial of Service via Malformed String Input
CVSS 6.5
CVE-2022-4886 HIGH
ingress-nginx <1.8.0 - path Sanitization Bypass via log_format Directive
CVSS 8.8
CVE-2022-22384 MEDIUM
IBM Security Verify Privilege On-Premises <11.5 - Info Disclosure
CVSS 4.3
CVE-2022-48605 CRITICAL
Huawei EMUI - Improper Input Validation in Fingerprint Module
CVSS 9.8
CVE-2022-24093 CRITICAL
Adobe Commerce <2.4.3-p1, <2.3.7-p2 - Code Injection
CVSS 9.1
CVE-2022-43903 MEDIUM
IBM Security Guardium 10.6, 11.3, and 11.4 - Authenticated Denial of Service via Improper Input Validation
CVSS 4.3
CVE-2022-47353 MEDIUM
Android - Denial of Service via vdsp Device Input Validation
CVSS 4.4
CVE-2022-44611 MEDIUM
Intel Celeron/Pentium/Atom/Xeon/Core Firmware - Privilege Escalation via Adjacent Access
CVSS 6.9
CVE-2022-38102 HIGH
Intel(R) Converged Security and Management Engine <16.1.27 - DoS
CVSS 7.2
CVE-2022-38076 LOW
Intel PROSet/Wireless < Privilege Escalation
CVSS 3.8
CVE-2022-37336 HIGH
Intel NUC 10 Performance Kit and Mini PC Firmware - Privilege Escalation via BIOS Input Validation
CVSS 7.9
CVE-2022-36392 HIGH
Intel(R) AMT & Intel(R) Standard Manageability <11.8.94-16.1.27 - DoS
CVSS 8.6
CVE-2022-36351 MEDIUM
Intel Killer and PROSet/Wireless WiFi - Unauthenticated Denial of Service via Adjacent Access
CVSS 4.3
CVE-2022-34657 MEDIUM
Intel PCSD BIOS < 02.01.0013 - Information Disclosure via Improper Input Validation
CVSS 6.0
Details
Vulnerabilities 12,467
Exploit Likelihood High