CWE-345

Insufficient Verification of Data Authenticity

Parent: CWE-693 - Protection Mechanism Failure

The product does not sufficiently verify the origin or authenticity of data, in a way that causes it to accept invalid data.

552 vulnerabilities with CWE-345
CVE-2024-48916 HIGH
Ceph <19.2.3 - Auth Bypass
CVSS 8.1
CVE-2024-39805 HIGH
Intel(R) DSA <23.4.39 - Privilege Escalation
CVSS 7.8
CVE-2024-10237 HIGH
Supermicro MBD-X12DPG-OA6 - Auth Bypass
CVSS 7.2
CVE-2024-55929 MEDIUM
Xerox Workplace Suite < 5.6.701.9 - Data Authenticity Bypass
CVSS 5.3
CVE-2024-54111 MEDIUM
Image Decoding Module - DoS
CVSS 5.7
CVE-2024-12369 MEDIUM
Org.wildfly.security Wildfly-elytron - Data Authenticity Bypass
CVSS 4.2
CVE-2024-52548 MEDIUM
Firmware <2.800.0000000.8.R.20241111 - Privilege Escalation
CVSS 6.7
CVE-2024-53259 MEDIUM
Quic-go < 0.48.2 - Data Authenticity Bypass
CVSS 6.5
CVE-2024-11666 CRITICAL
cph2_echarge_firmware <2.0.4 - Command Injection
CVSS 9.0
CVE-2024-8356 HIGH
Visteon Infotainment VIP MCU - Privilege Escalation
CVSS 7.8
CVE-2024-10977 LOW
Postgresql < 12.21 - Data Authenticity Bypass
CVSS 3.1
CVE-2024-43428 HIGH
Moodle < 4.1.12 - Data Authenticity Bypass
CVSS 7.7
CVE-2024-7847 HIGH
Rockwellautomation Rslogix 5 - Data Authenticity Bypass
CVSS 7.7
CVE-2024-47867 HIGH
Gradio - Code Injection
CVSS 7.5
CVE-2024-47079 MEDIUM
Meshtastic <2.5.1 - RCE
CVSS 6.4
CVE-2024-47123 MEDIUM
goTenna Pro App - Info Disclosure
CVSS 5.3
CVE-2024-43108 MEDIUM
goTenna Pro ATAK Plugin - Info Disclosure
CVSS 5.3
CVE-2024-23922 MEDIUM
Sony Xav-ax5500 Firmware - Data Authenticity Bypass
CVSS 6.8
CVE-2024-45410 CRITICAL
Traefik - SSRF
CVSS 9.8
CVE-2024-42483 MEDIUM
ESP-NOW - Cache Corruption
CVSS 6.5
CVE-2024-25584 MEDIUM
Dovecot - Info Disclosure
CVSS 5.3
CVE-2024-7980 HIGH
Google Chrome <128.0.6613.84 - Privilege Escalation
CVSS 7.8
CVE-2024-7979 HIGH
Google Chrome <128.0.6613.84 - Privilege Escalation
CVSS 7.8
CVE-2024-38198 HIGH
Windows Print Spooler - Privilege Escalation
CVSS 7.5
CVE-2024-37968 HIGH
Microsoft Windows Server 2008 - Data Authenticity Bypass
CVSS 7.5
Details
Vulnerabilities 552