Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-20 (输入验证不恰当) — Vulnerability Class 3267

3267 vulnerabilities classified as CWE-20 (输入验证不恰当). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2023-5624 Blind SQL Injection — Nessus Network Monitor 7.2 High2023-10-26
CVE-2023-5044 Code injection via nginx.ingress.kubernetes.io/permanent-redirect annotation — ingress-nginx 7.6 High2023-10-25
CVE-2023-5043 Ingress nginx annotation injection causes arbitrary command execution — ingress-nginx 7.6 High2023-10-25
CVE-2022-4886 Ingress-nginx `path` sanitization can be bypassed with `log_format` directive — ingress-nginx 8.8 High2023-10-25
CVE-2021-26736 ZApp Installer Privilege Escalation Vulnerabilities — Client Connector 6.7 Medium2023-10-23
CVE-2023-45805 Trojan Lockfilein pdm — pdm 7.8 High2023-10-20
CVE-2023-39456 Apache Traffic Server: Malformed http/2 frames can cause an abort — Apache Traffic Server 7.5 -2023-10-17
CVE-2021-29913 IBM Security Verify Privilege improper input validation — Security Verify Privilege 6.5 Medium2023-10-17
CVE-2022-22384 IBM Security Verify Privilege improper input validation — Security Verify Privilege 4.3 Medium2023-10-17
CVE-2023-40373 IBM Db2 denial of service — Db2 for Linux, UNIX and Windows 5.3 Medium2023-10-16
CVE-2023-38719 IBM Db2 denial of service — Db2 for Linux, UNIX and Windows 5.1 Medium2023-10-16
CVE-2023-40372 IBM Db2 denial of service — Db2 for Linux, UNIX and Windows 5.3 Medium2023-10-16
CVE-2023-30991 IBM Db2 denial of service — Db2 for Linux, UNIX and Windows 7.5 High2023-10-16
CVE-2023-40374 IBM Db2 denial of service — Db2 for Linux, UNIX and Windows 5.3 Medium2023-10-16
CVE-2023-38728 IBM Db2 denial of service — Db2 for Linux, UNIX and Windows 5.3 Medium2023-10-16
CVE-2023-38740 IBM Db2 denial of service — Db2 for Linux, UNIX and Windows 5.3 Medium2023-10-16
CVE-2023-38720 IBM Db2 denial of service — Db2 for Linux, UNIX and Windows 5.3 Medium2023-10-16
CVE-2023-30987 IBM Db2 denial of service — Db2 for Linux, UNIX and Windows 5.3 Medium2023-10-16
CVE-2023-45128 CSRF Token Reuse Vulnerability in fiber — fiber 10.0 Critical2023-10-16
CVE-2023-5421 Possible XSS execution in customer information — OTRS 3.5 Low2023-10-16
CVE-2023-45176 IBM App Connect Enterprise and IBM Integration Bus denial of service — App Connect Enterprise 6.2 Medium2023-10-14
CVE-2023-29464 Rockwell Automation FactoryTalk Linx Vulnerable to Denial-of-Service and Information Disclosure — FactoryTalk Linx 8.2 High2023-10-13
CVE-2023-5571 Improper Input Validation in vriteio/vrite — vriteio/vrite 8.1 -2023-10-13
CVE-2023-26367 Error based file extraction via PHP filter chains during product bulk import logic — Adobe Commerce 4.9 Medium2023-10-13
CVE-2023-44192 Junos OS: QFX5000 Series: DMA memory leak is observed when specific DHCP packets are transmitted over pseudo-VTEP — Junos OS 7.5 High2023-10-12
CVE-2023-44185 Junos OS and Junos OS Evolved: In an BGP scenario RPD crashes upon receiving and processing a specific malformed ISO VPN BGP UPDATE packet — Junos OS 7.5 High2023-10-12
CVE-2023-44183 Junos OS: QFX5000 Series, EX4600 Series: In a VxLAN scenario an adjacent attacker within the VxLAN sending genuine packets may cause a DMA memory leak to occur. — Junos OS 6.5 Medium2023-10-12
CVE-2023-32721 Stored XSS in Maps element — Zabbix 7.6 High2023-10-12
CVE-2023-44110 Huawei HarmonyOS 输入验证错误漏洞 — HarmonyOS 7.5 -2023-10-11
CVE-2023-44103 Huawei HarmonyOS 缓冲区错误漏洞 — HarmonyOS 6.5 -2023-10-11

Vulnerabilities classified as CWE-20 (输入验证不恰当) represent 3267 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.