Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-20 (输入验证不恰当) — Vulnerability Class 3267

3267 vulnerabilities classified as CWE-20 (输入验证不恰当). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-23641 Sending a GET or HEAD request with a body crashes SvelteKit — kit 7.5 High2024-01-24
CVE-2024-23842 Hitron Systems DVR LGUVR-16H Improper Input Validation Vulnerability — DVR LGUVR-16H 7.4 High2024-01-23
CVE-2024-22772 Hitron Systems DVR LGUVR-8H Improper Input Validation Vulnerability — DVR LGUVR-8H 7.4 High2024-01-23
CVE-2024-22771 Hitron Systems DVR LGUVR-4H Improper Input Validation Vulnerability — DVR LGUVR-4H 7.4 High2024-01-23
CVE-2024-22770 Hitron Systems DVR HVR-16781 Improper Input Validation Vulnerability — DVR HVR-16781 7.4 High2024-01-23
CVE-2024-22769 Hitron Systems DVR HVR-8781 Improper Input Validation Vulnerability — DVR HVR-8781 7.4 High2024-01-23
CVE-2024-22768 Hitron Systems DVR HVR-4781 Improper Input Validation Vulnerability — DVR HVR-4781 7.4 High2024-01-23
CVE-2024-23676 Sensitive Information Disclosure of Index Metrics through “mrollup” SPL Command — Splunk Enterprise 4.6 Medium2024-01-22
CVE-2024-23678 Deserialization of Untrusted Data on Splunk Enterprise for Windows through Path Traversal from Separate Disk Partition — Splunk Enterprise 7.5 High2024-01-22
CVE-2023-47141 IBM Db2 denial of service — Db2 for Linux, UNIX and Windows 5.3 Medium2024-01-22
CVE-2023-47158 IBM Db2 denial of service — Db2 for Linux, UNIX and Windows 5.3 Medium2024-01-22
CVE-2023-47747 IBM Db2 denial of service — Db2 for Linux, UNIX and Windows 5.3 Medium2024-01-22
CVE-2023-45193 IBM Db2 denial of service — Db2 for Linux, UNIX and Windows 5.9 Medium2024-01-22
CVE-2023-50308 IBM Db2 denial of service — Db2 for Linux, UNIX and Windows 6.5 Medium2024-01-22
CVE-2023-47746 IBM Db2 denial of service — Db2 for Linux, UNIX and Windows 5.3 Medium2024-01-22
CVE-2024-0396 Missing Server-Side Input Validation in HTTP Parameter — MOVEit Transfer 7.1 High2024-01-17
CVE-2024-0507 Privilege Escalation by Code Injection in the Management Console in GitHub Enterprise Server — Enterprise Server 6.5 Medium2024-01-16
CVE-2023-6395 Mock: privilege escalation for users that can access mock configuration — mock 6.7 Medium2024-01-16
CVE-2024-20709 New Edge T5 MSRC Case [DCMSFT-1081] — Acrobat for Edge 5.5 Medium2024-01-15
CVE-2024-20721 T5 Acrobat JS vulnerability - Exploitable crash via t5::javascript::get_page_num_words — Acrobat for Edge 5.5 Medium2024-01-15
CVE-2023-31035 CVE — DGX A100 7.5 High2024-01-12
CVE-2023-49568 Maliciously crafted Git server replies can cause DoS on go-git clients — go-git 7.5 High2024-01-12
CVE-2024-22199 Django Template Engine Vulnerable to XSS — template 9.3 Critical2024-01-11
CVE-2023-6781 Orbit Fox Companion <= 2.10.26 - Authenticated (Contributor+) Stored Cross-Site Scripting via custom fields — Orbit Fox: Duplicate Page, Menu Icons, SVG Support, Cookie Notice, Custom Fonts & More 6.4 Medium2024-01-11
CVE-2023-45171 IBM AIX denial of service — AIX 6.2 Medium2024-01-11
CVE-2023-45169 IBM AIX denial of service — AIX 6.2 Medium2024-01-11
CVE-2023-45173 IBM AIX denial of service — AIX 6.2 Medium2024-01-11
CVE-2023-45175 IBM AIX denial of service — AIX 6.2 Medium2024-01-11
CVE-2023-41781 XSS Vulnerability in ZTE MF258 Products — MF258 5.7 Medium2024-01-10
CVE-2024-21319 Microsoft Identity Denial of service vulnerability — .NET 6.0 6.8 Medium2024-01-09

Vulnerabilities classified as CWE-20 (输入验证不恰当) represent 3267 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.