The product does not validate, or incorrectly validates, a certificate.
1,454 vulnerabilities with CWE-295
CVE-2024-27323
HIGH
PDF-XChange Editor - Remote Code Execution via Improper Certificate Validation in Updater
CVSS 7.5
CVE-2024-29887
HIGH
Serverpod < 1.2.6 - Improper Certificate Validation in HTTP Client
CVSS 7.4
CVE-2024-2379
MEDIUM
curl - Improper Certificate Validation in wolfSSL QUIC Connection
CVSS 6.3
CVE-2024-27440
MEDIUM
Toyoko Inn <1.13.0-1.3.14 - Info Disclosure
CVSS 4.8
CVE-2024-23273
MEDIUM
Safari < 17.4 - Unauthenticated Private Browsing Tab Access via Improper Certificate Validation
CVSS 4.3
CVE-2024-1351
HIGH
MongoDB < 4.4.29, 5.0-5.0.24, 6.0-6.0.13, 7.0-7.0.5 - Improper Certificate Validation
CVSS 8.8
CVE-2024-28162
MEDIUM
Jenkins Delphix Plugin 3.0.1-3.1.0 - Improper Certificate Validation in Data Control Tower Connections
CVSS 4.2
CVE-2024-28161
MEDIUM
Jenkins Delphix Plugin 3.0.1 - Improper Certificate Validation
CVSS 5.3
CVE-2024-2048
HIGH
Vault < 1.14.10 and 1.15.0-1.15.5 - Improper Certificate Validation in TLS Certificate Auth Method
CVSS 8.1
CVE-2024-25141
CRITICAL
Mongo Hook <4.0.0 - Info Disclosure
CVSS 9.1
CVE-2024-25642
HIGH
SAP Cloud Connector 2.0 - Improper Certificate Validation
CVSS 7.4
CVE-2024-25140
CRITICAL
RustDesk 1.2.3 - Improper Certificate Validation via Trusted Root Certificate Installation
CVSS 9.8
CVE-2024-1052
HIGH
Boundary 0.8.0-0.14.9 - Session Hijacking via TLS Certificate Tampering
CVSS 8.0
CVE-2024-0853
MEDIUM
curl - Improper Certificate Validation via OCSP Stapling Bypass
CVSS 5.3
CVE-2023-33861
MEDIUM
IBM QRadar EDR 3.12 - Trusted Entity Spoofing
CVSS 6.5
CVE-2023-48785
MEDIUM
FortiNAC-F < 7.2.5 - Unauthenticated Man-in-the-Middle via Improper Certificate Validation
CVSS 4.8
CVE-2023-38009
MEDIUM
IBM Cognos Mobile Client 1.1 iOS - Information Disclosure via Man-in-the-Middle Attack
CVSS 4.2
CVE-2023-51634
HIGH
NETGEAR RAX30 Firmware < 1.0.12.100_hotfix - Unauthenticated Remote Code Execution via Improper Certificate Validation
CVSS 7.5
CVE-2023-49570
HIGH
Bitdefender Total Security < 27.0.25.115 - Improper Certificate Validation in HTTPS Scanning
CVSS 7.4
CVE-2023-6058
MEDIUM
Bitdefender Total Security < 27.0.25.115 - Improper Certificate Validation in Safepay HTTPS Handling
CVSS 6.8
CVE-2023-6057
HIGH
Bitdefender Total Security - Info Disclosure
CVSS 7.4
CVE-2023-6056
HIGH
Bitdefender Total Security - Info Disclosure
CVSS 7.4
CVE-2023-6055
HIGH
Bitdefender Total Security < 27.0.25.115 - Improper Certificate Validation in HTTPS Scanning
CVSS 7.4
CVE-2023-49567
MEDIUM
Bitdefender Total Security < 27.0.25.115 - Improper Certificate Validation via MD5 and SHA1 Collision Hash Functions
CVSS 6.8
CVE-2023-50314
MEDIUM
IBM WebSphere Application Server Liberty 17.0.0.3-24.0.0.8 - Improper Certificate Validation
CVSS 5.3
Details
Vulnerabilities
1,454