CWE-20

High likelihood

Improper Input Validation

Parent: CWE-707 - Improper Neutralization

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

12,451 vulnerabilities with CWE-20
CVE-2024-13681 HIGH
Uncode < 2.9.1.6 - Unauthenticated Arbitrary File Read via uncode_admin_get_oembed Function
CVSS 7.5
CVE-2024-10083 MEDIUM
Schneider Electric Uni-Telway driver - Authenticated Denial of Service via Crafted Input
CVSS 5.5
CVE-2024-42410 MEDIUM
Intel(R) Graphics Drivers - Authenticated Denial of Service via Improper Input Validation
CVSS 6.5
CVE-2024-39606 MEDIUM
Intel PROSet/Wireless WiFi and Killer WiFi < 23.80 - Unauthenticated Denial of Service via Adjacent Access
CVSS 6.1
CVE-2024-38307 HIGH
Intel(R) AMT/Standard Manageability - DoS
CVSS 7.7
CVE-2024-31153 MEDIUM
Intel QuickAssist Technology < 2.2.0-0012 - Authenticated Denial of Service via Local Input Validation
CVSS 5.0
CVE-2024-29214 HIGH
Intel(R) Processors - Privilege Escalation
CVSS 7.5
CVE-2024-28127 HIGH
Intel(R) Processors - Privilege Escalation
CVSS 7.5
CVE-2024-28047 MEDIUM
Intel(R) Processors - Info Disclosure
CVSS 5.3
CVE-2024-25571 LOW
Intel(R) SPS <SPS_E5_06.01.04.059.0 - DoS
CVSS 2.3
CVE-2024-24582 HIGH
Intel Processors - Privilege Escalation via XmlCli Feature Input Validation
CVSS 7.5
CVE-2024-0112 HIGH
NVIDIA Jetson AGX Orin & IGX Orin - Privilege Escalation
CVSS 7.5
CVE-2024-21925 HIGH
AMD Firmware AmdPspP2CmboxV2 - SMRAM Overwrite Code Execution
CVSS 8.2
CVE-2024-0179 HIGH
AMD Firmware AmdCpmDisplayFeatureSMM - SMRAM Overwrite Code Execution
CVSS 8.2
CVE-2024-33659 HIGH
AMI APTIO V 5.0-5.038 - Improper Input Validation in BIOS
CVSS 8.8
CVE-2024-55630 LOW
Joplin < 3.2.8 - Denial of Service via DOM Clobbering
CVSS 3.3
CVE-2024-57960 HIGH
Huawei EMUI and HarmonyOS - Information Disclosure via ExternalStorageProvider Input Verification
CVSS 7.7
CVE-2024-56135 HIGH
Progress LoadMaster < 7.2.48.12 and 7.2.49.0-7.2.54.12 and 7.2.55.0-7.2.60.1 - Authenticated OS Command Injection
CVSS 8.4
CVE-2024-56134 HIGH
Progress LoadMaster 7.2.48.12 and prior - Authenticated OS Command Injection
CVSS 8.4
CVE-2024-56133 HIGH
Progress LoadMaster < 7.2.48.12 - Authenticated OS Command Injection
CVSS 8.4
CVE-2024-56132 HIGH
Progress LoadMaster 7.2.48.12-7.2.60.1 - Authenticated OS Command Injection
CVSS 8.4
CVE-2024-56131 HIGH
Progress LoadMaster and Multi-Tenant Hypervisor - Authenticated OS Command Injection
CVSS 8.4
CVE-2024-38420 HIGH
Qualcomm FastConnect and AQT1000/AR8035 Firmware - Memory Corruption in Hypervisor Input Virtual Device
CVSS 8.8
CVE-2024-38413 MEDIUM
Product <Version - Memory Corruption
CVSS 6.6
CVE-2024-47857 CRITICAL
SSH Communication Security PrivX 18.0-36.0 - Account Impersonation via Public Key Signature Validation Bypass
CVSS 9.8
Details
Vulnerabilities 12,451
Exploit Likelihood High