Filtered by CWE-233
Total 23 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2020-10069 1 Zephyrproject 1 Zephyr 2024-11-21 4.3 Medium
Zephyr Bluetooth unchecked packet data results in denial of service. Zephyr versions >= v1.14.2, >= v2.2.0 contain Improper Handling of Parameters (CWE-233). For more information, see https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-f6vh-7v4x-8fjp
CVE-2023-1419 1 Redhat 2 Debezium, Integration 2024-11-18 5.9 Medium
A script injection vulnerability was found in the Debezium database connector, where it does not properly sanitize some parameters. This flaw allows an attacker to send a malicious request to inject a parameter that may allow the viewing of unauthorized data.
CVE-2023-40819 2 Devlop.systems, Id4software 2 Id4portais, Id4portais 2024-08-12 6.1 Medium
ID4Portais in version < V.2022.837.002a returns message parameter unsanitized in the response, resulting in a HTML Injection vulnerability.