CWE-20

High likelihood

Improper Input Validation

Parent: CWE-707 - Improper Neutralization

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

12,467 vulnerabilities with CWE-20
CVE-2022-40898 HIGH
Python Packaging Authority Wheel <0.37.1 - DoS
CVSS 7.5
CVE-2022-22184 HIGH
Juniper Networks Junos OS/Junos OS Evolved - DoS
CVSS 7.5
CVE-2022-34476 CRITICAL
Firefox < 102.0 - ASN.1 Parsing Vulnerability via Malformed Indefinite SEQUENCE
CVSS 9.8
CVE-2022-22749 MEDIUM
Firefox < 96.0 - URL Navigation to Non-Web Content via QR Code Scanner
CVSS 4.3
CVE-2022-44756 MEDIUM
HCL BigFix Insights < 2.0 - Authenticated Information Disclosure via Input Validation
CVSS 6.4
CVE-2022-40145 CRITICAL
Apache Karaf < 4.3.8 - Remote Code Execution via JNDI LDAP Data Source URI
CVSS 9.8
CVE-2022-46328 HIGH
HarmonyOS < 2.1 - Improper Input Validation
CVSS 7.5
CVE-2022-43875 MEDIUM
IBM Financial Transaction Manager - DoS
CVSS 6.2
CVE-2022-25940 HIGH
lite-server - Denial of Service via Malformed HTTP Request
CVSS 7.5
CVE-2022-46401 MEDIUM
Microchip RN4870 <1.43 - Buffer Overflow
CVSS 5.4
CVE-2022-3752 HIGH
Rockwellautomation Compactlogix 5480 ... - Improper Input Validation
CVSS 8.6
CVE-2022-4427 MEDIUM
OTRS 6.0.1-6.0.34, 7.0.1-7.0.40, 8.0.1-8.0.28 - SQL Injection via TicketSearch Webservice
CVSS 6.5
CVE-2022-26582 HIGH
PAX PayDroid 7.1.1 Virgo V04.3.26T1 - Authenticated OS Command Injection via systool client
CVSS 7.8
CVE-2022-3157 HIGH
Rockwell Automation CompactLogix 5370 Firmware 20-32 - Denial of Service via Malformed CIP Request
CVSS 8.6
CVE-2022-42534 HIGH
Android - Privilege Escalation via Improper Input Validation in trusty_ffa_mem_reclaim
CVSS 7.8
CVE-2022-20592 MEDIUM
Android - Local Information Disclosure via Improper Input Validation in drm_fw.c
CVSS 5.5
CVE-2022-20590 MEDIUM
Android - Local Information Disclosure via Improper Input Validation in drm_access_control.c
CVSS 5.5
CVE-2022-20589 MEDIUM
Android - Local Information Disclosure via Improper Input Validation in drm_access_control.c
CVSS 4.4
CVE-2022-20587 HIGH
Android kernel - Privilege Escalation
CVSS 7.8
CVE-2022-20586 HIGH
Android - Local Privilege Escalation via Improper Input Validation in drm_access_control.c
CVSS 7.8
CVE-2022-20585 HIGH
Android - Local Privilege Escalation via Improper Input Validation in drm_access_control.c
CVSS 7.8
CVE-2022-20584 HIGH
Android kernel - Local Privilege Escalation
CVSS 7.8
CVE-2022-20545 HIGH
Android 13 - Denial of Service in MediaControlPanel
CVSS 7.5
CVE-2022-20512 HIGH
Android 13 - Local Privilege Escalation via Task.java navigateUpTo Intent Handling
CVSS 7.8
CVE-2022-20507 HIGH
Android 13 - Local Privilege Escalation via UwbEventManager Bounds Check Bypass
CVSS 7.8
Details
Vulnerabilities 12,467
Exploit Likelihood High