CWE-20

High likelihood

Improper Input Validation

Parent: CWE-707 - Improper Neutralization

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

12,582 vulnerabilities with CWE-20
CVE-2020-0538 HIGH
Intel Active Management Technology Firmware 11.0-11.8.77 - Unauthenticated Denial of Service via Network Input
CVSS 7.5
CVE-2020-0537 MEDIUM
Intel AMT Firmware <12.0.64 - DoS via Network Access
CVSS 4.9
CVE-2020-0536 HIGH
Intel CSME and TXE Firmware < 11.8.77, < 12.0.64, < 3.1.75 - Unauthenticated Information Disclosure via DAL Subsystem
CVSS 7.5
CVE-2020-0535 MEDIUM
Intel AMT Firmware <12.0.64 - Unauthenticated Information Disclosure
CVSS 5.3
CVE-2020-0534 HIGH
Intel CSME Firmware <12.0.64,13.0-13.0.32,14.0-14.0.33,14.5-14.5.12 - DoS via DAL
CVSS 7.5
CVE-2020-0532 HIGH
Intel AMT Firmware <12.0.64 - DoS or Info Disclosure via Adjacent Access
CVSS 7.1
CVE-2020-0531 MEDIUM
Intel Active Management Technology Firmware 11.0-11.8.77 - Authenticated Information Disclosure via Network Access
CVSS 6.5
CVE-2020-13170 HIGH
HashiCorp Consul <1.6.6-1.7.4 - Privilege Escalation
CVSS 7.5
CVE-2020-0207 MEDIUM
Android 10 - Out-of-Bounds Read in jdmarker.c next_marker
CVSS 6.5
CVE-2020-0206 MEDIUM
Android 10 - Denial of Service in Settings App
CVSS 5.5
CVE-2020-0196 MEDIUM
Android 10 - Remote Denial of Service via Bluetooth RegisterNotificationResponse
CVSS 6.5
CVE-2020-0192 MEDIUM
Android 10 - Out-of-bounds Read in ih264d_decode_slice_thread
CVSS 6.5
CVE-2020-0179 HIGH
Android 10 - Path Traversal in MtpServer.cpp doSendObjectInfo
CVSS 7.8
CVE-2020-0176 HIGH
Android 10 - Out-of-bounds Read in avdt_msg.cc
CVSS 7.5
CVE-2020-0175 MEDIUM
Android 10 - Denial of Service via XMF_ReadNode Input Validation
CVSS 6.5
CVE-2020-0174 MEDIUM
Android 10 - Remote Denial of Service via Parse_ptbl Bounds Check Exhaustion
CVSS 6.5
CVE-2020-0173 MEDIUM
Android 10 - Unauthenticated Denial of Service via Parse_lins Input Validation
CVSS 6.5
CVE-2020-0172 MEDIUM
Android 10 - Remote Denial of Service via Missing Bounds Check in Parse_art
CVSS 6.5
CVE-2020-0171 MEDIUM
Android 10 - Denial of Service via Parse_lart Bounds Check Exhaustion
CVSS 6.5
CVE-2020-0170 MEDIUM
Android 10 - Remote Denial of Service via IMY_Event Bounds Check
CVSS 6.5
CVE-2020-0169 MEDIUM
Android 10 - Denial of Service via RTTTL_Event Bounds Check Exhaustion
CVSS 6.5
CVE-2020-0166 HIGH
Android 10 - Local Privilege Escalation via URI Parceling
CVSS 7.8
CVE-2020-0163 MEDIUM
Android 10 - Denial of Service in MPEG4Extractor.cpp
CVSS 6.5
CVE-2020-0162 MEDIUM
Android 10 - Denial of Service via MPEG4Extractor.cpp parseSampleAuxiliaryInformationOffsets
CVSS 6.5
CVE-2020-0161 MEDIUM
Android 10 - Denial of Service in MPEG4Extractor Chunk Parsing
CVSS 6.5
Details
Vulnerabilities 12,582
Exploit Likelihood High