CWE-20

High likelihood

Improper Input Validation

Parent: CWE-707 - Improper Neutralization

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

12,451 vulnerabilities with CWE-20
CVE-2024-43558 MEDIUM
Windows 10/11 DoS via Mobile Broadband Driver Out-of-bounds Read
CVSS 6.5
CVE-2024-43557 MEDIUM
Windows 10/11 Mobile Broadband Driver Out-of-bounds Read DoS
CVSS 6.5
CVE-2024-43542 MEDIUM
Windows Mobile Broadband Driver - Denial of Service via Out-of-bounds Read
CVSS 6.5
CVE-2024-43540 MEDIUM
Windows Mobile Broadband Driver - Denial of Service via Out-of-bounds Read
CVSS 6.5
CVE-2024-43538 MEDIUM
Windows Mobile Broadband Driver - Denial of Service via Out-of-bounds Read
CVSS 6.5
CVE-2024-43526 MEDIUM
Windows Mobile Broadband Driver - Remote Code Execution
CVSS 6.8
CVE-2024-43525 MEDIUM
Windows Mobile Broadband Driver - Remote Code Execution
CVSS 6.8
CVE-2024-43523 MEDIUM
Windows Mobile Broadband Driver - Remote Code Execution
CVSS 6.8
CVE-2024-38265 HIGH
Windows Routing and Remote Access Service - Remote Code Execution
CVSS 8.8
CVE-2024-38261 HIGH
Windows Routing and Remote Access Service - Remote Code Execution
CVSS 7.8
CVE-2024-30092 HIGH
Windows Hyper-V - Remote Code Execution
CVSS 8.0
CVE-2024-20659 HIGH
Windows Hyper-V < - Privilege Escalation
CVSS 7.1
CVE-2024-8518 LOW
Zelio Soft 2 < 5.4.2.2 - Denial of Service via Crafted Project File
CVSS 3.3
CVE-2024-43697 LOW
OpenHarmony < 4.1.0 - Denial of Service via Improper Input Validation
CVSS 3.3
CVE-2024-31449 HIGH
Redis 2.8.18-6.2.15 - Authenticated Stack-based Buffer Overflow via Lua Bit Library
CVSS 7.0
CVE-2024-31227 MEDIUM
Redis 7.0.0-7.2.5 - Authenticated Denial of Service via Malformed ACL Selector
CVSS 4.4
CVE-2024-33066 CRITICAL
Qualcomm Snapdragon X65 5G Modem-RF System Firmware - Memory Corruption via Log File Redirection
CVSS 9.8
CVE-2024-33065 HIGH
Qualcomm Snapdragon 8cx Gen 2 5G Compute Platform Firmware - Memory Corruption via Camera Driver Offset Variable
CVSS 8.4
CVE-2024-45871 MEDIUM
BandiView 7.05 - Denial of Service via sub_0x232bd8
CVSS 6.3
CVE-2024-25590 HIGH
PowerDNS Recursor - Resource Record Set Denial of Service
CVSS 7.5
CVE-2024-9407 MEDIUM
buildah < 1.37.4 and podman < 5.2.4 - Arbitrary Host File Access via Dockerfile RUN --mount Bind-Propagation Option
CVSS 4.7
CVE-2024-6436 MEDIUM
Rockwell Automation Sequence Manager - DoS
CVSS 6.5
CVE-2024-47175 HIGH
OpenPrinting libppd - Unsanitized IPP Attribute Code Execution
CVSS 8.6
CVE-2024-47076 HIGH
libcupsfilters < 2.0.0 - Improper Input Validation in cfGetPrinterAttributes5
CVSS 8.6
CVE-2024-47179 HIGH
RSSHub <64e00e7 - Artifact Poisoning
CVSS 8.8
Details
Vulnerabilities 12,451
Exploit Likelihood High