CWE-345
Insufficient Verification of Data Authenticity
The product does not sufficiently verify the origin or authenticity of data, in a way that causes it to accept invalid data.
658 vulnerabilities with CWE-345
CVE-2021-41203
HIGH
TensorFlow <2.7.0 - Memory Corruption
CVSS 7.8
CVE-2021-22460
MEDIUM
HarmonyOS - Insufficient Verification of Data Authenticity
CVSS 5.5
CVE-2021-26610
HIGH
godomall5 - Remote Code Execution via Unchecked File Upload
CVSS 7.2
CVE-2021-38396
MEDIUM
Programmer Installation Utility - Code Injection
CVSS 6.5
CVE-2021-22947
MEDIUM
curl >=7.20.0 <=7.78.0 - Info Disclosure
CVSS 5.9
CVE-2021-41106
MEDIUM
JWT <3.4.6, 4.0.4, 4.1.5 - Info Disclosure
CVSS 4.4
CVE-2021-41087
MEDIUM
in-toto-golang - Privilege Escalation
CVSS 5.6
CVE-2021-34572
MEDIUM
Enbra EWM 1.7.29 - Insufficient Verification of Data Authenticity in Wireless M-Bus Security Mode 5
CVSS 6.5
CVE-2021-26608
HIGH
Handysoft Co., Ltd - File Download/Execution
CVSS 8.8
CVE-2021-40491
MEDIUM
GNU Inetutils <2.2 - Info Disclosure
CVSS 6.5
CVE-2021-37421
CRITICAL
Zoho ManageEngine ADSelfService Plus < 6.1 - Admin Portal Access-Restriction Bypass
CVSS 9.8
CVE-2021-1586
HIGH
Cisco NX-OS - Unauthenticated Denial of Service via Crafted TCP Traffic
CVSS 8.6
CVE-2021-39158
HIGH
NVCaffe < 0.17.4 - Dependency Confusion via Malicious PyPI Package
CVSS 8.8
CVE-2021-38597
MEDIUM
wolfSSL < 4.8.1 - Insufficient Verification of Data Authenticity via OCSP NoCheck Extension
CVSS 5.9
CVE-2021-21739
MEDIUM
ZTE ZXCTN 6120H Firmware V5.10.00B24 - Insufficient Verification of Data Authenticity
CVSS 4.6
CVE-2021-22419
MEDIUM
HarmonyOS - Persistent Denial of Service via Insufficient Data Authenticity Verification
CVSS 5.5
CVE-2021-21588
MEDIUM
Dell PowerFlex Presentation Server 3.5.x-3.5.9 - Unauthenticated Cross-Site WebSocket Hijacking
CVSS 6.5
CVE-2021-36367
HIGH
PuTTY < 0.75 - Insufficient Verification of Data Authenticity
CVSS 8.1
CVE-2021-29963
MEDIUM
Firefox for Android < 89.0 - Insufficient Verification of Data Authenticity in Private Browsing Mode
CVSS 4.3
CVE-2021-23998
MEDIUM
Firefox < 88.0 and Firefox ESR < 78.10 - Insufficient Verification of Data Authenticity via Window Navigation
CVSS 6.5
CVE-2021-33887
MEDIUM
Peloton TTR01 <= PTV55G - Insufficient Verification of Data Authenticity
CVSS 6.8
CVE-2021-33712
HIGH
Mendix SAML Module <V2.1.2 - Privilege Escalation
CVSS 8.8
CVE-2021-33840
HIGH
luca < 1.1.14 - Denial of Service via Unverified Phone Number Data
CVSS 7.5
CVE-2021-32665
HIGH
wire < 3.81 - Insufficient Verification of Data Authenticity
CVSS 8.8
CVE-2021-28678
MEDIUM
Pillow < 8.2.0 - Denial of Service via BLP Image Data Handling
CVSS 5.5
Details
Vulnerabilities
658