The product does not validate, or incorrectly validates, a certificate.
1,400 vulnerabilities with CWE-295
CVE-2019-19270
HIGH
ProFTPD <= 1.3.6b - Improper Certificate Validation in CRL Entry Check
CVSS 7.5
CVE-2019-5102
MEDIUM
OpenWrt ustream-ssl <18.06.4,15.05.1 - Info Disclosure
CVSS 4.0
CVE-2019-5101
MEDIUM
OpenWrt ustream-ssl <18.06.4,15.05.1 - Info Disclosure
CVSS 4.0
CVE-2019-16209
HIGH
Brocade SANnav <2.0 - Man-in-the-Middle
CVSS 7.4
CVE-2019-3685
HIGH
Open Build Service < 0.165.4 - Improper Certificate Validation in osc Client
CVSS 7.4
CVE-2019-18633
CRITICAL
European Commission eIDAS-Node Integration Package <2.3.1 - Info Di...
CVSS 9.8
CVE-2019-18632
CRITICAL
European Commission eIDAS-Node Integration Package <2.3.1 - Certifi...
CVSS 9.8
CVE-2019-5538
MEDIUM
VMware vCenter Server 6.5-6.7 - Sensitive Information Disclosure via File-Based Backup and Restore
CVSS 5.9
CVE-2019-5537
MEDIUM
VMware vCenter Server 6.5-6.7 - Sensitive Information Disclosure via FTPS/HTTPS Certificate Validation Bypass
CVSS 5.9
CVE-2019-11674
MEDIUM
Micro Focus Self Service Password Reset <4.4.0.4 - Info Disclosure
CVSS 5.9
CVE-2019-10446
HIGH
Jenkins Cadence vManager Plugin < 2.7.0 - SSL/TLS and Hostname Verification Disabled
CVSS 8.2
CVE-2019-10444
MEDIUM
Jenkins Bumblebee HP ALM Plugin < 4.1.3 - Improper Certificate Validation
CVSS 6.5
CVE-2019-14823
HIGH
JSS CryptoManager >4.4.6-4.6.0 - Privilege Escalation
CVSS 7.4
CVE-2019-0054
MEDIUM
Juniper Junos OS 15.1X49 < D120 - Man-in-the-Middle via App-ID Signature Update Client
CVSS 6.8
CVE-2019-5506
MEDIUM
NetApp Clustered Data ONTAP >=9.0 <9.6 - Improper Certificate Validation
CVSS 5.9
CVE-2019-16263
HIGH
Twitter Kit framework <3.4.2 - Info Disclosure
CVSS 7.4
CVE-2019-15042
HIGH
JetBrains TeamCity 2018.2.4 - Improper Certificate Validation
CVSS 7.5
CVE-2019-1231
MEDIUM
Microsoft Project Rome - Information Disclosure via Improper SSL/TLS Certificate Validation
CVSS 5.9
CVE-2019-11497
HIGH
Couchbase Server <5.0.0 - Info Disclosure
CVSS 7.5
CVE-2019-16179
MEDIUM
Limesurvey <3.17.14 - Info Disclosure
CVSS 5.3
CVE-2019-3751
MEDIUM
Dell EMC Enterprise Copy Data Management <=3.0 - Unauthenticated MITM via Certificate Validation Bypass
CVSS 6.4
CVE-2019-15525
HIGH
pw3270 < 5.1 - Improper Certificate Validation
CVSS 8.1
CVE-2019-1948
MEDIUM
Cisco Webex Meetings 11.3-39.5 - Unauthenticated Sensitive Data Exposure via Invalid SSL Certificate
CVSS 5.9
CVE-2019-5280
MEDIUM
Huawei CloudLink Phone 7900 V600R019C10 - SSL/TLS Man-in-the-Middle
CVSS 6.5
CVE-2019-14516
HIGH
mAadhaar 1.2.7 - Improper Certificate Validation
CVSS 7.4
Details
Vulnerabilities
1,400