Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-20 (输入验证不恰当) — Vulnerability Class 3267

3267 vulnerabilities classified as CWE-20 (输入验证不恰当). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-52337 Tuned: improper sanitization of `instance_name` parameter of the `instance_create()` method 5.5 Medium2024-11-26
CVE-2024-22117 Value of sysmap_element_url can be de-synchronized causing the map element to crash when new URLs is added — Zabbix 2.2 Low2024-11-26
CVE-2017-15832 Buffer overwrite due to improper input validation in WLAN host — Snapdragon 7.8 High2024-11-26
CVE-2024-11234 Configuring a proxy in a stream context might allow for CRLF injection in URIs — PHP 4.8 Medium2024-11-24
CVE-2024-9257 Logsign Unified SecOps Platform delete_gsuite_key_file Input Validation Arbitrary File Deletion Vulnerability — Unified SecOps Platform 8.1 -2024-11-22
CVE-2024-52802 RIOT-OS missing dhcpv6_opt_t minimum header length check — RIOT 7.5 High2024-11-22
CVE-2021-30299 Improper Input Validation in Audio — Snapdragon 6.7 Medium2024-11-22
CVE-2024-52309 SFTPGo allows administrators to restrict command execution from the EventManager — sftpgo 7.2AIHighAI2024-11-21
CVE-2024-9875 Okta Privileged Access 输入验证错误漏洞 — Okta Privileged Access Server Agent (SFTD) 7.1 High2024-11-20
CVE-2024-45422 Zoom Apps - Improper Input Validation — Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers 6.5 Medium2024-11-19
CVE-2020-3538 Cisco Data Center Network Manager Path Traversal Vulnerability — Cisco Data Center Network Manager 4.6 Medium2024-11-18
CVE-2021-1462 Cisco SD-WAN vManage Software Privilege Escalation Vulnerability — Cisco Catalyst SD-WAN Manager 6.7 -2024-11-18
CVE-2021-1465 Cisco?SD-WAN vManage Software 输入验证错误漏洞 — Cisco Catalyst SD-WAN Manager 4.3 Medium2024-11-18
CVE-2024-0793 Kube-controller-manager: malformed hpa v1 manifest causes crash 7.7 High2024-11-17
CVE-2021-1466 Cisco SD-WAN vDaemon Buffer Overflow Vulnerability — Cisco Catalyst SD-WAN Manager 5.4 Medium2024-11-15
CVE-2021-1470 Cisco SD-WAN SQL Injection Vulnerability — Cisco Catalyst SD-WAN Manager 4.9 Medium2024-11-15
CVE-2021-1482 Cisco SD-WAN vManage Authorization Bypass Vulnerability — Cisco Catalyst SD-WAN Manager 6.4 Medium2024-11-15
CVE-2021-1464 Cisco SD-WAN vManage Authorization Bypass Vulnerability — Cisco Catalyst SD-WAN Manager 5.0 Medium2024-11-15
CVE-2021-34752 Cisco Firepower Threat Defense Command Injection Vulnerabilities — Cisco Firepower Threat Defense Software 6.7 Medium2024-11-15
CVE-2022-2232 Keycloak: ldap injection on username input — Red Hat Single Sign-On 7 7.5 High2024-11-14
CVE-2024-50305 Apache Traffic Server: Valid Host field value can cause crashes — Apache Traffic Server 6.5 -2024-11-14
CVE-2024-38479 Apache Traffic Server: Cache key plugin is vulnerable to cache poisoning attack — Apache Traffic Server 9.1 -2024-11-14
CVE-2024-8936 Schneider Electric 输入验证错误漏洞 — Modicon M340 CPU (part numbers BMXP34*) 6.5 Medium2024-11-13
CVE-2024-49033 Microsoft Word Security Feature Bypass Vulnerability — Microsoft Office LTSC for Mac 2024 7.5 High2024-11-12
CVE-2024-21976 AMD NPU driver 安全漏洞 — AMD Ryzen™ AI Software 8.8 High2024-11-12
CVE-2024-21975 AMD NPU driver 安全漏洞 — AMD Ryzen™ AI Software 8.8 High2024-11-12
CVE-2024-21974 AMD NPU driver 安全漏洞 — AMD Ryzen™ AI Software 8.8 High2024-11-12
CVE-2024-21949 AMD NPU driver 安全漏洞 — AMD Ryzen™ AI Software 5.5 Medium2024-11-12
CVE-2024-10944 FactoryTalk® Updater Remote Code Execution — FactoryTalk Updater 8.4 High2024-11-12
CVE-2024-39281 Unbounded allocation in ctl(4) CAM Target Layer — FreeBSD 6.5AIMediumAI2024-11-12

Vulnerabilities classified as CWE-20 (输入验证不恰当) represent 3267 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.