Fallos del tipo CWE-345

369 resultados
CVE-2018-7798HIGHA Insufficient Verification of Data Authenticity (CWE-345) vulnerability exists in the Modicon M221, all versions, which could cause a changEPSS 0.7%CVE-2019-12620MEDIUMCisco HyperFlex Software Counter Value Injection VulnerabilityEPSS 0.7%CVE-2022-24889LOWInsufficient Verification of Data Authenticity in Nextcloud ServerEPSS 0.6%CVE-2021-33712A vulnerability has been identified in Mendix SAML Module (All versions < V2.1.2). The configuration of the SAML module does not properly chEPSS 0.6%CVE-2021-1403HIGHCisco IOS XE Software Web UI Cross-Site WebSocket Hijacking VulnerabilityEPSS 0.6%CVE-2024-53259MEDIUMquic-go affected by an ICMP Packet Too Large Injection Attack on LinuxEPSS 0.6%CVE-2023-26467HIGHA man in the middle can redirect traffic to a malicious server in a compromised configuration.EPSS 0.6%CVE-2019-17636In Eclipse Theia versions 0.3.9 through 0.15.0, one of the default pre-packaged Theia extensions is "Mini-Browser", published as "@theia/minEPSS 0.6%CVE-2021-26625HIGHtobesoft Nexacro arbitrary file download vulnerabilityEPSS 0.6%CVE-2023-46445MEDIUMAn issue in AsyncSSH before 2.14.1 allows attackers to control the extension info message (RFC 8308) via a man-in-the-middle attack, aka a "EPSS 0.6%CVE-2023-5747HIGHCommand injection via wave install fileEPSS 0.6%CVE-2023-3325HIGHCMS Commander <= 2.287 - Authorization Bypass through Use of Insufficiently Unique Cryptographic SignatureEPSS 0.6%CVE-2024-7256HIGHInsufficient data validation in Dawn in Google Chrome on Android prior to 127.0.6533.88 allowed a remote attacker to execute arbitrary code EPSS 0.5%CVE-2022-23491MEDIUMRemoval of TrustCor root certificateEPSS 0.5%CVE-2024-3049MEDIUMBooth: specially crafted hash can lead to invalid hmac being accepted by booth serverEPSS 0.5%CVE-2026-4115MEDIUMPuTTY Ed25519 Signature ecc-ssh.c eddsa_verify signature verificationEPSS 0.5%CVE-2020-3220MEDIUMCisco IOS XE Software IPsec VPN Denial of Service VulnerabilityEPSS 0.5%CVE-2020-24672CRITICALABB Base Software for SoftControl Remote Code Execution vulnerabilityEPSS 0.5%CVE-2023-2987CRITICALWordapp <= 1.6.0 - Authorization Bypass through Use of Insufficiently Unique Cryptographic SignatureEPSS 0.5%CVE-2025-30144MEDIUMFast-JWT Improperly Validates iss ClaimsEPSS 0.5%