CWE-347

Improper Verification of Cryptographic Signature

Parent: CWE-345 - Insufficient Verification of Data Authenticity

The product does not verify, or incorrectly verifies, the cryptographic signature for data.

651 vulnerabilities with CWE-347
CVE-2024-32911 CRITICAL
Google Android - Broken Cryptographic Algorithm
CVSS 9.8
CVE-2024-37568 HIGH
Authlib < 1.3.1 - Improper Access Control
CVSS 7.5
CVE-2024-2451 MEDIUM
TeamViewer <15.54 - Privilege Escalation
CVSS 6.4
CVE-2024-1721 MEDIUM
HYPR Passwordless <9.1 - RCE
CVE-2024-27244 MEDIUM
Zoom Workplace VDI App < - Privilege Escalation
CVSS 6.7
CVE-2024-34358 MEDIUM
TYPO3 <9.5.48 ELTS, <10.4.45 ELTS, <11.5.37 LTS, <12.4.15 LTS, <13....
CVSS 5.3
CVE-2024-32962 CRITICAL
NPM Xml-crypto < 6.0.0 - Signature Verification Bypass
CVSS 10.0
CVE-2024-23480 HIGH
Zscaler Client Connector <4.2 - RCE
CVSS 7.5
CVE-2024-27247 MEDIUM
Zoom Desktop Client for macOS <5.17.10 - Privilege Escalation
CVSS 5.5
CVE-2024-24694 MEDIUM
Zoom Desktop Client for Windows <5.17.10 - Privilege Escalation
CVSS 5.9
CVE-2024-26228 HIGH
Microsoft Windows 10 1507 - Signature Verification Bypass
CVSS 7.8
CVE-2024-26194 HIGH
Microsoft Windows 10 1507 - Signature Verification Bypass
CVSS 7.4
CVE-2024-2307 MEDIUM
osbuild-composer - Info Disclosure
CVSS 6.1
CVE-2024-21491 MEDIUM
Svix-webhooks < 1.17.0 - Authentication Bypass
CVSS 5.9
CVE-2024-1150 HIGH
Snow Software Inventory Agent <7.3.1 - Info Disclosure
CVSS 7.8
CVE-2024-1149 HIGH
Snowsoftware Snow Inventory Agent < 6.7.2 - Signature Verification Bypass
CVSS 7.8
CVE-2024-21917 CRITICAL
Rockwellautomation Factorytalk Servic... - Signature Verification Bypass
CVSS 9.8
CVE-2024-21383 LOW
Microsoft Edge Chromium - Signature Verification Bypass
CVSS 3.3
CVE-2024-23680 MEDIUM
Amazon Aws Encryption SDK < 1.9.0 - Signature Verification Bypass
CVSS 5.3
CVE-2024-0567 HIGH
GnuTLS - DoS
CVSS 7.5
CVE-2024-21669 CRITICAL
Hyperledger Aries Cloud Agent < 0.10.5 - Signature Verification Bypass
CVSS 9.9
CVE-2023-53951 CRITICAL
Ever Gauzy <0.281.9 - Auth Bypass
CVSS 9.8
CVE-2023-25574 CRITICAL
Lti Jupyterhub Authenticator < 1.4.0 - Signature Verification Bypass
CVSS 10.0
CVE-2023-28806 MEDIUM
Zscaler Client Connector <4.2.0.190 - Info Disclosure
CVSS 5.7
CVE-2023-34435 HIGH
Realtek Rtl819x Jungle Software Devel... - Signature Verification Bypass
CVSS 7.2
Details
Vulnerabilities 651