CWE-20
12,947 CVEs • Abstraction: Class • Likelihood of Exploit: High
Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
CVEs (12,947)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
An improper input validation vulnerability in loading graph file in DSP driver prior to SMR Sep-2021 Release 1 allows attackers to perform permanent denial of service on the device. |
Path traversal vulnerability in FactoryAirCommnadManger prior to SMR Sep-2021 Release 1 allows attackers to write file as system uid via remote socket. |
1Qualcomm 138Aqt1000 Firmware Ar8031 FirmwareAr8035 Firmware+135 moreJun 17, 2026 Sep 9, 2021 N/A· v4 6.5 MEDIUM· v3 3.3 LOW· v2 Improper handling of ASB-C broadcast packets with crafted opcode in LMP can lead to uncontrolled resource consumption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Conne...Show more |
A vulnerability in Base Software for SoftControl allows an attacker to insert and run arbitrary code in a computer running the affected product. This issue affects: . |
1Apple 4Ipados Iphone OsMac Os X+1 moreJun 17, 2026 Sep 8, 2021 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 A validation issue was addressed with improved logic. This issue is fixed in macOS Big Sur 11.4, Security Update 2021-003 Catalina, Security Update 2021-004 Mojave, iOS 14.6 and iPadOS 14.6. Processing a maliciously craf...Show more |
1Apple 5Ipados Iphone OsMac Os X+2 moreJun 17, 2026 Sep 8, 2021 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. This issue is fixed in Security Update 2021-004 Mojave, iOS 14.6 and iPadOS 14.6, Security Update 202...Show more |
A validation issue was addressed with improved logic. This issue is fixed in macOS Big Sur 11.4, Security Update 2021-003 Catalina. A malicious application may be able to send unauthorized Apple events to Finder. |
1Apple 3Ipados Iphone OsWatchosJun 17, 2026 Sep 8, 2021 N/A· v4 5.5 MEDIUM· v3 4.9 MEDIUM· v2 A validation issue was addressed with improved input sanitization. This issue is fixed in iOS 14.5 and iPadOS 14.5, watchOS 7.4. A local user may be able to write arbitrary files. |
1Apple 3Ipados Iphone OsWatchosJun 17, 2026 Sep 8, 2021 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 An input validation issue was addressed with improved input validation. This issue is fixed in iOS 14.7, watchOS 7.6. A shortcut may be able to bypass Internet permission requirements. |
2Debian Tuxera2Debian Linux Ntfs 3gJun 17, 2026 Sep 7, 2021 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 A crafted NTFS image can trigger a heap-based buffer overflow, caused by an unsanitized attribute in ntfs_get_attribute_value, in NTFS-3G < 2021.8.22. |
2Debian Tuxera2Debian Linux Ntfs 3gJun 17, 2026 Sep 7, 2021 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 A crafted NTFS image can cause an out-of-bounds access in ntfs_decompress in NTFS-3G < 2021.8.22. |
2Debian Tuxera2Debian Linux Ntfs 3gJun 17, 2026 Sep 7, 2021 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 A crafted NTFS image can cause a heap-based buffer overflow in ntfs_compressed_pwrite in NTFS-3G < 2021.8.22. |
2Debian Tuxera2Debian Linux Ntfs 3gJun 17, 2026 Sep 7, 2021 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 A crafted NTFS image can cause an out-of-bounds access in ntfs_inode_sync_standard_information in NTFS-3G < 2021.8.22. |
2Debian Tuxera2Debian Linux Ntfs 3gJun 17, 2026 Sep 7, 2021 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 A crafted NTFS image can trigger an out-of-bounds access, caused by an unsanitized attribute length in ntfs_inode_lookup_by_name, in NTFS-3G < 2021.8.22. |
2Debian Tuxera2Debian Linux Ntfs 3gJun 17, 2026 Sep 7, 2021 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 A crafted NTFS image can cause out-of-bounds reads in ntfs_attr_find and ntfs_external_attr_find in NTFS-3G < 2021.8.22. |
2Debian Tuxera2Debian Linux Ntfs 3gJun 17, 2026 Sep 7, 2021 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 A crafted NTFS image can cause a heap-based buffer overflow in ntfs_inode_lookup_by_name in NTFS-3G < 2021.8.22. |
2Debian Tuxera2Debian Linux Ntfs 3gJun 17, 2026 Sep 7, 2021 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 A crafted NTFS image can trigger an out-of-bounds read, caused by an invalid attribute in ntfs_attr_find_in_attrdef, in NTFS-3G < 2021.8.22. |
3Debian FedoraprojectTuxera3Debian Linux FedoraNtfs 3gJun 17, 2026 Sep 7, 2021 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 A crafted NTFS image can cause an integer overflow in memmove, leading to a heap-based buffer overflow in the function ntfs_attr_record_resize, in NTFS-3G < 2021.8.22. |
3Debian FedoraprojectTuxera3Debian Linux FedoraNtfs 3gJun 17, 2026 Sep 7, 2021 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 A crafted NTFS image can cause an out-of-bounds read in ntfs_runlists_merge_i in NTFS-3G < 2021.8.22. |
3Debian FedoraprojectTuxera3Debian Linux FedoraNtfs 3gJun 17, 2026 Sep 7, 2021 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 A crafted NTFS image can cause an out-of-bounds read in ntfs_ie_lookup in NTFS-3G < 2021.8.22. |