Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-20 (输入验证不恰当) — Vulnerability Class 3271

3271 vulnerabilities classified as CWE-20 (输入验证不恰当). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2022-47925 Insufficient Input Validation in the Endpoint of the csaf-validator-service — csaf-validator-service 7.5 High2023-03-27
CVE-2023-25865 Adobe Substance 3D Stager OBJ File Parsing Memory Corruption Remote Code Execution Vulnerability — Substance3D - Stager 7.8 High2023-03-27
CVE-2023-25867 Adobe Substance 3D Stager PCX File Parsing Memory Corruption Remote Code Execution Vulnerability — Substance3D - Stager 7.8 High2023-03-27
CVE-2022-47502 Apache OpenOffice: Macro URL arbitrary script execution — Apache OpenOffice 7.3 -2023-03-24
CVE-2023-1289 ImageMagick 输入验证错误漏洞 — ImageMagick 5.5 -2023-03-23
CVE-2023-20072 Cisco IOS XE Software Fragmented Tunnel Protocol Packet Denial of Service Vulnerability — Cisco IOS XE Software 8.6 High2023-03-23
CVE-2023-28330 Moodle: authenticated arbitrary file read through malformed backup file 6.5 -2023-03-23
CVE-2022-43863 IBM QRadar SIEM privilege escalation — QRadar SIEM 6.7 Medium2023-03-22
CVE-2023-25859 Adobe Illustrator Improper Input Validation Remote Code Execution Vulnerability — Illustrator 7.8 High2023-03-22
CVE-2023-27984 Schneider Electric IGSS Data Server 输入验证错误漏洞 — IGSS Data Server(IGSSdataServer.exe) 7.8 High2023-03-21
CVE-2023-27586 CairoSVG improperly processes SVG files loaded from external resources — CairoSVG 9.9 Critical2023-03-20
CVE-2023-1250 Code execution through ACL creation — OTRS 7.4 High2023-03-20
CVE-2023-28100 TIOCLINUX can send commands outside sandbox if running on a virtual console — flatpak 10.0 Critical2023-03-16
CVE-2023-24571 Dell BIOS 输入验证错误漏洞 — Embedded Box PC 3000 , CPG BIOS 7.5 High2023-03-16
CVE-2023-21453 SAMSUNG Mobile Devices 输入验证错误漏洞 — Samsung Mobile Devices 6.0 Medium2023-03-16
CVE-2023-28113 russh may use insecure Diffie-Hellman keys — russh 5.9 Medium2023-03-16
CVE-2023-28099 OpenSIPS has vulnerability in the ds_is_in_list() function — opensips 5.9 Medium2023-03-15
CVE-2023-28098 OpenSIPS has vulnerability in the Digest Authentication Parser — opensips 5.9 Medium2023-03-15
CVE-2023-28095 OpenSIPS has vulnerability in the building the local negative replies — opensips 7.5 High2023-03-15
CVE-2023-27601 OpenSIPS has vulnerability in the codec_delete_XX() functions — opensips 7.5 High2023-03-15
CVE-2023-27600 OpenSIPS has vulnerability in the codec_delete_XX() functions — opensips 7.5 High2023-03-15
CVE-2023-27599 OpenSIPS has vulnerability in the parse_to_param() function — opensips 7.5 High2023-03-15
CVE-2023-27597 OpenSIPS has vulnerability in the parse_uri() function — opensips 7.5 High2023-03-15
CVE-2023-0100 Eclipse BIRT 安全漏洞 — Eclipse BIRT (Business Intelligence Reporting Tool) 9.1 -2023-03-15
CVE-2023-24866 Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability — Windows 10 Version 1809 6.5 Medium2023-03-14
CVE-2023-24865 Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability — Windows 10 Version 1809 6.5 Medium2023-03-14
CVE-2023-23419 Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability — Windows 11 version 22H2 7.8 High2023-03-14
CVE-2023-23416 Windows Cryptographic Services Remote Code Execution Vulnerability — Windows 10 Version 1809 7.8 High2023-03-14
CVE-2023-23409 Client Server Run-Time Subsystem (CSRSS) Information Disclosure Vulnerability — Windows 10 Version 1809 5.5 Medium2023-03-14
CVE-2023-24856 Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability — Windows 10 Version 1809 7.5 High2023-03-14

Vulnerabilities classified as CWE-20 (输入验证不恰当) represent 3271 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.