CWE-295

Improper Certificate Validation

Parent: CWE-287 - Improper Authentication

The product does not validate, or incorrectly validates, a certificate.

1,335 vulnerabilities with CWE-295
CVE-2025-35983 MEDIUM
Controller 7000 <9.30.250624a - Privilege Escalation
CVSS 6.5
CVE-2025-48802 MEDIUM
Microsoft Windows SMB - Certificate Validation Spoofing
CVSS 6.5
CVE-2025-7095 LOW
Comodo Internet Security - Authentication Bypass
CVSS 3.7
CVE-2025-34066 HIGH
AVTECH - Improper Certificate Validation
CVE-2025-29331 CRITICAL
Mhsanaei 3x-ui < 2.5.3 - Improper Certificate Validation
CVSS 9.8
CVE-2025-6032 HIGH
Podman - Info Disclosure
CVSS 8.3
CVE-2025-6433 CRITICAL
Mozilla Firefox < 140.0 - Improper Certificate Validation
CVSS 9.8
CVE-2025-39205 MEDIUM
Hitachienergy Microscada X Sys600 - Improper Certificate Validation
CVSS 6.5
CVE-2025-52919 MEDIUM
Yealink RPS <2025-05-26 - Info Disclosure
CVSS 4.3
CVE-2025-32878 CRITICAL
Yftech Coros Pace 3 Firmware - Improper Certificate Validation
CVSS 9.8
CVE-2025-36041 MEDIUM
IBM MQ Operator < 2.0.29 - Improper Certificate Validation
CVSS 4.7
CVE-2025-24471 MEDIUM
Fortinet Fortisase < 7.4.8 - Improper Certificate Validation
CVSS 6.5
CVE-2025-33031 HIGH
File Station 5 <5.5.6.4847 - Info Disclosure
CVSS 8.8
CVE-2025-30279 HIGH
File Station 5 <5.5.6.4847 - Improper Certificate Validation
CVSS 8.8
CVE-2025-29885 HIGH
File Station 5 <5.5.6.4791 - Improper Certificate Validation
CVSS 8.8
CVE-2025-29884 HIGH
File Station 5 <5.5.6.4791 - Info Disclosure
CVSS 8.8
CVE-2025-29883 HIGH
File Station 5 <5.5.6.4791 - Improper Certificate Validation
CVSS 8.8
CVE-2025-22486 HIGH
Qnap File Station < 5.5.6.4791 - Improper Certificate Validation
CVSS 8.8
CVE-2025-5025 MEDIUM
libcurl - TLS Pinning
CVSS 4.8
CVE-2025-4947 MEDIUM
Haxx Curl < 8.14.0 - Improper Certificate Validation
CVSS 6.5
CVE-2025-5279 HIGH
Pypi Redshift-connector < 2.1.7 - Improper Certificate Validation
CVE-2025-4575 MEDIUM
Openssl - Improper Certificate Validation
CVSS 6.5
CVE-2025-32407 MEDIUM
Samsung Internet - Improper Certificate Validation
CVSS 5.9
CVE-2025-3463 CRITICAL
ASUS DriverHub - Buffer Overflow
CVE-2025-20157 MEDIUM
Cisco Catalyst SD-WAN Manager - Info Disclosure
CVSS 5.9
Details
Vulnerabilities 1,335