CWE-20

High likelihood

Improper Input Validation

Parent: CWE-707 - Improper Neutralization

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

12,466 vulnerabilities with CWE-20
CVE-2023-51747 HIGH
Apache James <3.8.1-3.7.5 - SMTP Smuggling
CVSS 7.1
CVE-2023-52372 HIGH
Huawei EMUI and HarmonyOS - Denial of Service via Motor Module Input Parameter
CVSS 7.5
CVE-2023-52368 MEDIUM
Huawei EMUI and HarmonyOS - Improper Input Validation in Account Module
CVSS 5.3
CVE-2023-51931 HIGH
alanclarke URLite < 3.1.0 - Denial of Service via Parsing Function
CVSS 7.5
CVE-2023-6937 MEDIUM
wolfSSL < 5.6.6 - Improper Input Validation in (D)TLS Record Handling
CVSS 5.3
CVE-2023-32484 CRITICAL
Dell Enterprise SONiC < 3.5.5 - Unauthenticated Privilege Escalation via Remote User Authentication
CVSS 9.8
CVE-2023-32462 CRITICAL
Dell SmartFabric OS10 10.5.2.0-10.5.2.11 - Unauthenticated OS Command Injection
CVSS 9.8
CVE-2023-42776 LOW
Intel SGX DCAP < 1.19.100.3 - Authenticated Information Disclosure via Local Access
CVSS 3.8
CVE-2023-34983 MEDIUM
Intel PROSet/Wireless and Killer Wi-Fi < 22.240 - Unauthenticated Denial of Service via Adjacent Access
CVSS 4.3
CVE-2023-28374 MEDIUM
Intel PROSet/Wireless and Killer Wi-Fi < 22.240 - Unauthenticated Denial of Service via Adjacent Access
CVSS 6.1
CVE-2023-25951 MEDIUM
Intel PROSet/Wireless and Killer Wi-Fi < 22.240 - Privilege Escalation via Improper Input Validation
CVSS 6.0
CVE-2023-24463 MEDIUM
Intel(R) Thunderbolt(TM) DCH <88 - Info Disclosure
CVSS 4.3
CVE-2023-22342 HIGH
Intel(R) Thunderbolt(TM) DCH <88 - Privilege Escalation
CVSS 7.7
CVE-2023-33057 HIGH
Qualcomm 315 5G IoT Modem Firmware - Denial of Service in Multi-Mode Call Processor
CVSS 7.5
CVE-2023-47355 HIGH
Eyuep Can Yilmaz [ROOT] Quick Reboot 1.0.8 - Unauthenticated Denial of Service via Exposed Broadcast Receivers
CVSS 7.5
CVE-2023-46159 LOW
IBM Storage Ceph 5.3z1, 5.3z5, and 6.1z1 - Authenticated Denial of Service
CVSS 2.6
CVE-2023-49610 HIGH
MachineSense FeverWarn Firmware - Remote Code Execution and Stack Overflow via Adjacent Network Message
CVSS 8.1
CVE-2023-4553 MEDIUM
OpenText AppBuilder <23.2 - Info Disclosure
CVSS 5.3
CVE-2023-4552 MEDIUM
OpenText AppBuilder <23.2 - Info Disclosure
CVSS 5.5
CVE-2023-4551 HIGH
OpenText AppBuilder <23.2 - Command Injection
CVSS 7.2
CVE-2023-4550 HIGH
OpenText AppBuilder <23.2 - Info Disclosure
CVSS 7.5
CVE-2023-47141 MEDIUM
IBM Db2 < 11.5.9 - Authenticated Denial of Service via Crafted Query
CVSS 5.3
CVE-2023-47747 MEDIUM
IBM DB2 10.5.0.0-10.5.0.10 - Authenticated Denial of Service via Crafted Query
CVSS 5.3
CVE-2023-47158 MEDIUM
IBM DB2 10.5-11.5 - Authenticated Denial of Service via Crafted Query
CVSS 5.3
CVE-2023-50308 MEDIUM
IBM Db2 < 11.5.9 - Authenticated Denial of Service via Columnar Table Statement
CVSS 6.5
Details
Vulnerabilities 12,466
Exploit Likelihood High