Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
HIGH 7.8 CVE-2022-30754 Implicit Intent hijacking vulnerability in AppLinker prior to SMR Jul-2022 Release 1 allow allows attackers to launch certain activities with privile… Android Mitigation only Fix from $1,9502022-07-12 HIGH 7.8 CVE-2022-30756 Implicit Intent hijacking vulnerability in Finder prior to SMR Jul-2022 Release 1 allow allows attackers to launch certain activities with privilege … Android Mitigation only Fix from $1,9502022-07-12 HIGH 7.5 CVE-2021-44221 A vulnerability has been identified in SIMATIC eaSie Core Package (All versions < V22.00). The affected systems do not properly validate input that i… Simatic Easie Core Package 22.00+ Fix from $1,9502022-07-12 CRITICAL 9.8 CVE-2020-29507 Dell BSAFE Crypto-C Micro Edition, versions before 4.1.4, and Dell BSAFE Micro Edition Suite, versions before 4.4, contain an Improper Input Validati… HTTP Server 4.1.4 / 4.4+ Fix from $2,3002022-07-11 CRITICAL 9.8 CVE-2020-29508 Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.6, contain an Improper Input Validati… HTTP Server 4.1.5 / 4.6+ Fix from $2,3002022-07-11 CRITICAL 9.8 CVE-2020-35169 Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.5.2, contain an Improper Input Valida… HTTP Server 4.1.5 / 4.5.2+ Fix from $2,3002022-07-11 HIGH 7.5 CVE-2022-31121 Hyperledger Fabric is a permissioned distributed ledger framework. In affected versions if a consensus client sends a malformed consensus request to … Fabric 2.2.7 / 2.4.5+ Fix from $1,9502022-07-07 MEDIUM 6.5 CVE-2022-29892 Improper input validation vulnerability in Space of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attacker to repeatedly display errors … Garoon after 5.5.1 Fix from $1,6002022-07-04 CRITICAL 9.1 CVE-2022-28127EPSS 35% A data removal vulnerability exists in the web_server /action/remove/ API functionality of Robustel R1510 3.3.0. A specially-crafted network request … R1510 Firmware No fix yet Fix from $2,3002022-06-30 CRITICAL 9.8 CVE-2013-4144 There is an object injection vulnerability in swfupload plugin for wordpress. Swfupload No fix yet Fix from $2,3002022-06-30 HIGH 7.8 CVE-2022-2145 Cloudflare WARP client for Windows (up to v. 2022.5.309.0) allowed creation of mount points from its ProgramData folder. During installation of the W… Warp 2022.5.309.0+ Fix from $1,9502022-06-28 HIGH 7.8 CVE-2022-26862 Prior Dell BIOS versions contain an Input Validation vulnerability. A locally authenticated malicious user could potentially exploit this vulnerabili… Alienware M15 R5 Firmware 1.2.1 / 1.4.4+ Fix from $1,9502022-06-23 HIGH 7.8 CVE-2022-26863 Prior Dell BIOS versions contain an Input Validation vulnerability. A locally authenticated malicious user could potentially exploit this vulnerabili… Alienware M15 R5 Firmware 1.2.1 / 1.4.4+ Fix from $1,9502022-06-23 HIGH 7.8 CVE-2022-26864 Prior Dell BIOS versions contain an Input Validation vulnerability. A locally authenticated malicious user could potentially exploit this vulnerabili… Alienware M15 R5 Firmware 1.2.1 / 1.4.4+ Fix from $1,9502022-06-23 CRITICAL 9.8 CVE-2022-32534 The Bosch Ethernet switch PRA-ES8P2S with software version 1.01.05 and earlier was found to be vulnerable to command injection through its diagnostic… Pra Es8p2s Firmware after 1.01.05 Fix from $2,3002022-06-23 CRITICAL 9.8 CVE-2022-33752 CA Automic Automation 12.2 and 12.3 contain an insufficient input validation vulnerability in the Automic agent that could allow a remote attacker to… Ca Automic Automation Mitigation only Fix from $2,3002022-06-16 CRITICAL 9.8 CVE-2022-33754 CA Automic Automation 12.2 and 12.3 contain an insufficient input validation vulnerability in the Automic agent that could allow a remote attacker to… Ca Automic Automation Mitigation only Fix from $2,3002022-06-16 HIGH 7.1 CVE-2021-3675 Improper Input Validation vulnerability in synaTEE.signed.dll of Synaptics Fingerprint Driver allows a local authorized attacker to overwrite a heap … Fingerprint Driver 5.1.340.26 / 5.2.229.26+ Fix from $1,9502022-06-16 MEDIUM 5.5 CVE-2022-21180 Improper input validation for some Intel(R) Processors may allow an authenticated user to potentially cause a denial of service via local access. Xeon E3 1585 V5 Firmware Patch available Fix from $1,6002022-06-15 HIGH 8.1 CVE-2022-32154 Dashboards in Splunk Enterprise versions before 9.0 might let an attacker inject risky search commands into a form token when the token is used in a … Splunk 8.2.2106 / 9.0+ Fix from $1,9502022-06-15 MEDIUM 5.5 CVE-2022-20205 In isFileUri of FileUtil.java, there is a possible way to bypass the check for a file:// scheme due to improper input validation. This could lead to … Android Mitigation only Fix from $1,6002022-06-15 HIGH 7.8 CVE-2022-20186 In kbase_mem_alias of mali_kbase_mem_linux.c, there is a possible arbitrary code execution due to improper input validation. This could lead to local… Android No fix yet Fix from $1,9502022-06-15 HIGH 7.8 CVE-2022-20156 In unflatten of GraphicBuffer.cpp, there is a possible arbitrary code execution due to improper input validation. This could lead to local escalation… Android Mitigation only Fix from $1,9502022-06-15 MEDIUM 5.5 CVE-2022-20129 In registerPhoneAccount of PhoneAccountRegistrar.java, there is a possible way to prevent the user from selecting a phone account due to improper inp… Android Mitigation only Fix from $1,6002022-06-15 HIGH 7.8 CVE-2022-20134 In readArguments of CallSubjectDialog.java, there is a possible way to trick the user to call the wrong phone number due to improper input validation… Android Mitigation only Fix from $1,9502022-06-15 MEDIUM 5.5 CVE-2022-32240 When a user opens manipulated Jupiter Tesselation (.jt, JTReader.x3d) files received from untrusted sources in SAP 3D Visual Enterprise Viewer, the a… 3d Visual Enterprise Viewer after 9.0 Fix from $1,6002022-06-14 MEDIUM 5.5 CVE-2022-32241 When a user opens manipulated Portable Document Format (.pdf, PDFView.x3d) files received from untrusted sources in SAP 3D Visual Enterprise Viewer, … 3d Visual Enterprise Viewer after 9.0 Fix from $1,6002022-06-14 MEDIUM 5.5 CVE-2022-32242 When a user opens manipulated Radiance Picture (.hdr, hdr.x3d) files received from untrusted sources in SAP 3D Visual Enterprise Viewer, the applicat… 3d Visual Enterprise Viewer after 9.0 Fix from $1,6002022-06-14 MEDIUM 5.5 CVE-2022-32243 When a user opens manipulated Scalable Vector Graphics (.svg, svg.x3d) files received from untrusted sources in SAP 3D Visual Enterprise Viewer, the … 3d Visual Enterprise Viewer after 9.0 Fix from $1,6002022-06-14 MEDIUM 5.5 CVE-2022-32238 When a user opens manipulated Encapsulated Post Script (.eps, ai.x3d) files received from untrusted sources in SAP 3D Visual Enterprise Viewer, the a… 3d Visual Enterprise Viewer after 9.0 Fix from $1,6002022-06-14