CWE-20
12,942 CVEs • Abstraction: Class • Likelihood of Exploit: High
Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
CVEs (12,942)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Cisco 4Rv110w Wireless N Vpn Firewall Firmware Rv130 Vpn Router FirmwareRv130w Wireless N Multifunction Vpn Router Firmware+1 moreJun 17, 2026 Jul 16, 2020 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 A vulnerability in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an unauthenticated, remote attacker to execute arbitrary code on an affected device. The...Show more |
Advantech iView, versions 5.6 and prior, has an improper input validation vulnerability. Successful exploitation of this vulnerability could allow an attacker to remotely execute arbitrary code. |
1Microsoft 2Windows 10 Windows Server 2016Jun 17, 2026 Jul 14, 2020 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 A remote code execution vulnerability exists when the Windows Font Driver Host improperly handles memory.An attacker who successfully exploited the vulnerability would gain execution on a victim system.The security updat...Show more |
1Microsoft 4Windows Server 2008 Windows Server 2012Windows Server 2016+1 moreJun 17, 2026 Jul 14, 2020 N/A· v4 10.0 CRITICAL· v3 10.0 HIGH· v2 A remote code execution vulnerability exists in Windows Domain Name System servers when they fail to properly handle requests, aka 'Windows DNS Server Remote Code Execution Vulnerability'. |
1Microsoft 3Windows Server 2008 Windows Server 2012Windows Server 2016Jun 17, 2026 Jul 14, 2020 N/A· v4 9.0 CRITICAL· v3 7.7 HIGH· v2 A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V RemoteFX vGPU Remote Code Exe...Show more |
1Microsoft 3Windows Server 2008 Windows Server 2012Windows Server 2016Jun 17, 2026 Jul 14, 2020 N/A· v4 9.0 CRITICAL· v3 7.7 HIGH· v2 A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V RemoteFX vGPU Remote Code Exe...Show more |
1Microsoft 3Windows Server 2008 Windows Server 2012Windows Server 2016Jun 17, 2026 Jul 14, 2020 N/A· v4 9.0 CRITICAL· v3 7.7 HIGH· v2 A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V RemoteFX vGPU Remote Code Exe...Show more |
1Microsoft 3Windows Server 2008 Windows Server 2012Windows Server 2016Jun 17, 2026 Jul 14, 2020 N/A· v4 9.0 CRITICAL· v3 7.7 HIGH· v2 A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V RemoteFX vGPU Remote Code Exe...Show more |
1Microsoft 3Windows Server 2008 Windows Server 2012Windows Server 2016Jun 17, 2026 Jul 14, 2020 N/A· v4 9.0 CRITICAL· v3 7.7 HIGH· v2 A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V RemoteFX vGPU Remote Code Exe...Show more |
1Microsoft 3Windows Server 2008 Windows Server 2012Windows Server 2016Jun 17, 2026 Jul 14, 2020 N/A· v4 9.0 CRITICAL· v3 7.7 HIGH· v2 A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V RemoteFX vGPU Remote Code Exe...Show more |
1Microsoft 5Lync Sharepoint Enterprise ServerSharepoint Foundation+2 moreJun 17, 2026 Jul 14, 2020 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 An elevation of privilege vulnerability exists when Microsoft SharePoint Server and Skype for Business Server improperly handle OAuth token validation. An attacker who successfully exploited the vulnerability could bypas...Show more |
1Siemens 13Opcenter Execution Discrete Opcenter Execution FoundationOpcenter Execution Process+10 moreJun 17, 2026 Jul 14, 2020 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 A vulnerability has been identified in Opcenter Execution Discrete (All versions < V3.2), Opcenter Execution Foundation (All versions < V3.2), Opcenter Execution Process (All versions < V3.2), Opcenter Intelligence (All...Show more |
6Canonical DebianFedoraproject+3 more6Debian Linux FedoraLeap+3 moreJun 17, 2026 Jul 14, 2020 N/A· v4 10.0 CRITICAL· v3 7.5 HIGH· v2 The bubblewrap sandbox of WebKitGTK and WPE WebKit, prior to 2.28.3, failed to properly block access to CLONE_NEWUSER and the TIOCSTI ioctl. CLONE_NEWUSER could potentially be used to confuse xdg-desktop-portal, which al...Show more |
1Citrix 5Application Delivery Controller Firmware Gateway FirmwareGateway Plug In For Linux+2 moreJun 17, 2026 Jul 10, 2020 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 Improper input validation in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix SDWAN WAN-OP versions before 11.1.1a, 11.0.3d and 10.2.7 resulting in li...Show more |
1Citrix 2Application Delivery Controller Firmware Netscaler Gateway FirmwareJun 17, 2026 Jul 10, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Improper input validation in Citrix ADC and Citrix Gateway versions before 11.1-63.9 and 12.0-62.10 allows unauthenticated users to perform a denial of service attack. |
HUAWEI P30 smartphone with versions earlier than 10.1.0.135(C00E135R2P11) have an improper input verification vulnerability. An attribution in a module is not set correctly and some verification is lacked. Attackers with...Show more |
RAONWIZ v2018.0.2.50 and eariler versions contains a vulnerability that could allow remote files to be downloaded and excuted by lack of validation to file extension, witch can used as remote-code-excution attacks by hac...Show more |
1Huawei 50Ar120 S Firmware Ar1200 S FirmwareAr1200 Firmware+47 moreJun 17, 2026 Jul 8, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 The SIP module of some Huawei products have a denial of service (DoS) vulnerability. A remote attacker could exploit these three vulnerabilities by sending the specially crafted messages to the affected device. Due to th...Show more |
1Huawei 50Ar120 S Firmware Ar1200 S FirmwareAr1200 Firmware+47 moreJun 17, 2026 Jul 8, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 The SIP module of some Huawei products have a denial of service (DoS) vulnerability. A remote attacker could exploit these three vulnerabilities by sending the specially crafted messages to the affected device. Due to th...Show more |
1Huawei 50Ar120 S Firmware Ar1200 S FirmwareAr1200 Firmware+47 moreJun 17, 2026 Jul 8, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 The SIP module of some Huawei products have a denial of service (DoS) vulnerability. A remote attacker could exploit these three vulnerabilities by sending the specially crafted messages to the affected device. Due to th...Show more |