Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-20 (输入验证不恰当) — Vulnerability Class 3271

3271 vulnerabilities classified as CWE-20 (输入验证不恰当). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2021-44462 Horner Automation Cscape EnvisionRV Improper Input Validation — Cscape EnvisionRV 7.8 High2022-03-25
CVE-2021-35254 Authenticated Remote Code Execution in WebHelpDesk 12.7.8 — WebHelpDesk 8.2 High2022-03-25
CVE-2022-21820 NVIDIA Data Center GPU Manager 输入验证错误漏洞 — NVIDIA Data Center GPU Manager 6.3 Medium2022-03-24
CVE-2022-0551 Authenticated RCE on project configuration import in Guardian/CMC before 22.0.0 — Guardian 7.2 High2022-03-24
CVE-2022-0550 Authenticated RCE on logo report upload in Guardian/CMC before 22.0.0 — Guardian 7.2 High2022-03-24
CVE-2021-27420 GE UR family input validation — UR family 5.3 Medium2022-03-23
CVE-2021-27418 GE UR family input validation — UR family 5.3 Medium2022-03-23
CVE-2021-4219 Imagemagick Studio ImageMagick 输入验证错误漏洞 — imagemagick 5.5 -2022-03-23
CVE-2021-44040 HTTP request line fuzzing attacks — Apache Traffic Server 7.5 -2022-03-23
CVE-2022-24774 Improper Input Validation leading to Path Traversal in CycloneDX BOM Repository Server — cyclonedx-bom-repo-server 7.1 High2022-03-22
CVE-2022-24775 Improper Input Validation in guzzlehttp/psr7 — psr7 7.5 High2022-03-21
CVE-2022-0415 Remote Command Execution in uploading repository file in gogs/gogs — gogs/gogs 8.8 -2022-03-21
CVE-2020-25721 Samba 输入验证错误漏洞 — samba 8.8 -2022-03-16
CVE-2021-42854 Directory Traversal Read/Write/Delete at PluginServlet — SteelCentral AppInternals Dynamic Sampling Agent 9.8 Critical2022-03-09
CVE-2021-42856 Reflected Cross-site Scripting at DsaDataTest — SteelCentral AppInternals Dynamic Sampling Agent 4.7 Medium2022-03-09
CVE-2021-42787 Directory Traversal Write/Delete/Partial Read at AgentConfigurationServlet — SteelCentral AppInternals Dynamic Sampling Agent 9.4 Critical2022-03-09
CVE-2021-42857 Directory Traversal Partial Write at AgentDaServlet — SteelCentral AppInternals Dynamic Sampling Agent 5.3 Medium2022-03-09
CVE-2021-42786 Remote Code Execution at AgentControllerServlet — SteelCentral AppInternals Dynamic Sampling Agent 9.8 Critical2022-03-09
CVE-2021-42853 Directory Traversal Delete/Read at AgentDiagnosticServlet — SteelCentral AppInternals Dynamic Sampling Agent 9.1 Critical2022-03-09
CVE-2022-25818 UWB stack 缓冲区错误漏洞 — Samsung Mobile Devices 6.5 Medium2022-03-08
CVE-2021-20302 ILM OpenEXR 安全漏洞 — OpenEXR 6.2 -2022-03-04
CVE-2022-24723 Improper Input Validation in URI.js — URI.js 5.3 Medium2022-03-03
CVE-2021-23192 Samba输入验证错误漏洞 — samba 7.5 -2022-03-02
CVE-2022-24720 Improper Input Validation in image_processing — image_processing 9.8 Critical2022-03-01
CVE-2022-24711 Remote CLI Command Execution Vulnerability in CodeIgniter4 — CodeIgniter4 9.4 Critical2022-02-28
CVE-2021-26617 Gabia Firstmall remote code execution vulnerability — Firstmall 8.1 High2022-02-25
CVE-2021-26618 Tmax ToOffice arbitrary file creation vulnerability — ToOffice 7.1 High2022-02-18
CVE-2020-25717 Samba 输入验证错误漏洞 — samba 8.8 -2022-02-18
CVE-2021-4120 snapd could be made to bypass intended access restrictions through snap content interfaces and layout paths — snapd 8.2 High2022-02-17
CVE-2022-20750 Cisco Redundancy Configuration Manager for Cisco StarOS Software TCP Denial of Service Vulnerability — Cisco Redundancy Configuration Manager 5.3 Medium2022-02-17

Vulnerabilities classified as CWE-20 (输入验证不恰当) represent 3271 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.