CWE-233Base

Improper Handling of Parameters

Incomplete in the CWE catalog · 23 CVEs mapped

23
CVEs mapped
6.5
Median CVSS
What it is

The product does not properly handle when the expected number of parameters, fields, or arguments is not provided in input, or if those parameters are undefined.

Recent examples
6.2cvss
CVE-2026-0515

Insufficient parameter validation in the QNX Neutrino kernel impacts versions of the QNX Software Development Platform and QNX OS for Safety

Insufficient Parameter Validation in the SchedGet() system call could allow an attacker with local access to cause a crash of the QNX Neutrino kernel.

MEDIUMno explanation yet
0%
epss
9.4cvss
CVE-2026-32998

This vulnerability in Veeam Service Provider Console allows for remote code execution

This vulnerability in Veeam Service Provider Console allows for remote code execution.

CRITICALno explanation yet
1%
epss
3.8cvss
CVE-2026-33585

Arqit SKA-Platform Improper Handling of Parameters Vulnerability

Improper management of the idle timeout parameter in the Keycloak interface of the Arqit SKA-Platform enables an attacker to impersonate an authenticated tenant user via an unexpired browser session. This issue affects Symmetric Key Agreement Platform: before 26.03.

LOWno explanation yet
0%
epss
The record
Technical detail
CWE ID
CWE-233
Abstraction
Base
Structure
Simple
Status
Incomplete