CWE-345

Insufficient Verification of Data Authenticity

Parent: CWE-693 - Protection Mechanism Failure

The product does not sufficiently verify the origin or authenticity of data, in a way that causes it to accept invalid data.

658 vulnerabilities with CWE-345
CVE-2014-9194
Arbiter 1094B GPS Substation Clock - DoS
CVE-2014-4936
Malwarebytes Anti-Malware <2.0.3 & MBAE <1.04.1.1012 - RCE
CVE-2014-4883
lwip < 1.4.1 - DNS Cache Poisoning via Predictable Query IDs and Source Ports
CVE-2014-2718
T-mobile Tm-ac1900 < 3.0.0.4.374.x - Data Authenticity Bypass
CVE-2014-0364
Ignite Realtime Smack XMPP API <4.0.0-rc1 - Info Disclosure
CVE-2013-2167 CRITICAL
python-keystoneclient 0.2.3-0.2.5 - Middleware Memcache Signing Bypass
CVSS 9.8
CVE-2013-7398
Async Http Client <1.9.0 - Man-in-the-Middle
CVE-2013-7397
Async Http Client <1.9.0 - Man-in-the-Middle
Details
Vulnerabilities 658