Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-20 (输入验证不恰当) — Vulnerability Class 3268

3268 vulnerabilities classified as CWE-20 (输入验证不恰当). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2023-21498 SAMSUNG Mobile devices 输入验证错误漏洞 — Samsung Mobile Devices 6.0 Medium2023-05-04
CVE-2023-21494 SAMSUNG Mobile devices 安全漏洞 — Samsung Mobile Devices 5.6 Medium2023-05-04
CVE-2022-46365 Apache StreamPark (incubating): Logic error causing any account reset — Apache StreamPark (incubating) 8.1 -2023-05-01
CVE-2023-0683 Lenovo XClarity Controller 安全漏洞 — XClarity Controller 8.3 High2023-05-01
CVE-2023-0896 Lenovo Smart Clock Essential 信任管理问题漏洞 — Lenovo Smart Clock Essential with Alexa Built In 8.8 High2023-05-01
CVE-2023-26022 IBM Db2 denial of service — DB2 for Linux, UNIX and Windows 5.9 Medium2023-04-28
CVE-2023-26021 IBM Db2 denial of service — DB2 for Linux, UNIX and Windows 7.5 High2023-04-28
CVE-2023-27555 IBM Db2 denial of service — DB2 for Linux, UNIX and Windows 5.1 Medium2023-04-28
CVE-2023-25930 IBM Db2 denial of service — DB2 for Linux, UNIX and Windows 5.9 Medium2023-04-28
CVE-2023-29255 IBM DB2 for Linux, UNIX and Windows denial of service — DB2 for Linux, UNIX and Windows 7.5 High2023-04-27
CVE-2023-27559 IBM Db2 denial of service — Db2 for Linux, UNIX and Windows 5.3 Medium2023-04-26
CVE-2023-29530 Laminas Diactoros vulnerable to HTTP Multiline Header Termination — laminas-diactoros 7.5 High2023-04-24
CVE-2023-22581 White Rabbit Switch - Unauthenticated remote code execution — White Rabbit Switch 9.8 Critical2023-04-24
CVE-2023-22916 Zyxel ATP 安全漏洞 — ATP series firmware 8.1 High2023-04-24
CVE-2023-29410 Schneider Electric Conext Gateway 输入验证错误漏洞 — InsightHome 7.2 High2023-04-18
CVE-2023-28981 Junos OS and Junos OS Evolved: If malformed IPv6 router advertisements are received, memory corruption will occur which causes an rpd crash — Junos OS 6.5 Medium2023-04-17
CVE-2023-30542 GovernorCompatibilityBravo may trim proposal calldata — openzeppelin-contracts 6.8 Medium2023-04-16
CVE-2023-30535 Snowflake JDBC vulnerable to command injection via SSO URL authentication — snowflake-jdbc 7.3 High2023-04-14
CVE-2023-29194 vitess allows users to create keyspaces that can deny access to already existing keyspaces — vitess 4.1 Medium2023-04-14
CVE-2023-26388 ZDI-CAN-20286: Adobe Substance 3D Stager USDZ File Parsing Memory Corruption Remote Code Execution Vulnerability — Substance3D - Stager 7.8 High2023-04-12
CVE-2023-26405 ZDI-CAN-20712: Object Prototype pollution which leads to API Restrictions Bypass — Acrobat Reader 7.8 High2023-04-12
CVE-2023-26407 ZDI-CAN-20712: Net.HTTP.request Arbitrary Command Execution — Acrobat Reader 7.8 High2023-04-12
CVE-2023-28304 Microsoft ODBC and OLE DB Remote Code Execution Vulnerability — Microsoft ODBC Driver 17 for SQL Server 7.8 High2023-04-11
CVE-2023-28302 Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability — Windows 10 Version 1809 7.5 High2023-04-11
CVE-2023-28274 Windows Win32k Elevation of Privilege Vulnerability — Windows 10 Version 1809 7.8 High2023-04-11
CVE-2023-23375 Microsoft ODBC and OLE DB Remote Code Execution Vulnerability — Microsoft OLE DB Driver 18 for SQL Server 7.8 High2023-04-11
CVE-2023-21554 Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability — Windows 10 Version 1809 9.8 Critical2023-04-11
CVE-2023-24893 Visual Studio Code Remote Code Execution Vulnerability — Visual Studio Code 7.8 High2023-04-11
CVE-2023-28291 Raw Image Extension Remote Code Execution Vulnerability — Raw Image Extension 8.4 High2023-04-11
CVE-2022-42477 Fortinet FortiAnalyzer 输入验证错误漏洞 — FortiAnalyzer 6.5 High2023-04-11

Vulnerabilities classified as CWE-20 (输入验证不恰当) represent 3268 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.