CWE-354

Medium likelihood

Improper Validation of Integrity Check Value

Parent: CWE-345 - Insufficient Verification of Data Authenticity

The product does not validate or incorrectly validates the integrity check values or "checksums" of a message. This may prevent it from detecting if the data has been modified or corrupted in transmission.

157 vulnerabilities with CWE-354
CVE-2023-30356 HIGH
Shenzen Tenda Technology IP Camera CP3 <V11.10.00.2211041355 - Code...
CVSS 7.5
CVE-2023-23120 MEDIUM
TRENDnet TV-IP651WI <v1.07.01 - Code Injection
CVSS 5.9
CVE-2023-23119 MEDIUM
Ubiquiti airFiber AF2X Radio <3.2.2 - Info Disclosure
CVSS 5.9
CVE-2022-24404 MEDIUM
TETRA - Info Disclosure
CVSS 5.9
CVE-2022-45142 HIGH
heimdal - Logic Error
CVSS 7.5
CVE-2022-45191 MEDIUM
Microchip Rn4870 Firmware - Denial of Service
CVSS 6.5
CVE-2022-46402 MEDIUM
Microchip RN4870 <1.43 - Buffer Overflow
CVSS 6.5
CVE-2022-36360 HIGH
LOGO! 8 BM <V8.3 - Code Injection
CVSS 7.5
CVE-2022-38956 MEDIUM
Netgear WPN824EXT - MITM
CVSS 5.3
CVE-2022-38955 HIGH
Netgear WPN824EXT WiFi Range Extender - MITM
CVSS 7.5
CVE-2022-36174 HIGH
FreshService <2.11.0, <4.2.0, <3.3.0 - Info Disclosure
CVSS 8.1
CVE-2022-39845 MEDIUM
Samsung Kies <2.6.4.22074 - Privilege Escalation
CVSS 5.5
CVE-2022-39844 MEDIUM
Smart Switch PC <4.3.22083 - Privilege Escalation
CVSS 5.5
CVE-2022-29549 HIGH
Qualys Cloud Agent For Linux < 2.5.548.2 - Privilege Escalation
CVSS 7.3
CVE-2022-35961 HIGH
OpenZeppelin Contracts - Signature Malleability
CVSS 7.9
CVE-2022-30316 MEDIUM
Honeywell Safety Manager Firmware - Remote Code Execution
CVSS 6.8
CVE-2022-33711 MEDIUM
Samsung USB Driver <1.7.56.0 - Path Traversal
CVSS 5.5
CVE-2022-21757 HIGH
Google Android - Denial of Service
CVSS 7.5
CVE-2022-29898 CRITICAL
PHOENIX CONTACT RAD-ISM-900-EN-* - RCE
CVSS 9.1
CVE-2022-29173 HIGH
go-tuf - Info Disclosure
CVSS 8.0
CVE-2022-25946 HIGH
F5 BIG-IP Advanced WAF, ASM, and GC <9.0 - Auth Bypass
CVSS 8.7
CVE-2022-22781 HIGH
Zoom Client for Meetings <5.9.6 - Privilege Escalation
CVSS 7.5
CVE-2022-22253 HIGH
DFX - Improper Validation
CVSS 7.5
CVE-2021-37182 HIGH
Siemens SCALANCE XM408-4C/XM408-8C/XM416-4C/XR524-8C/XR526-8C <6.5 - Information Disclosure
CVSS 7.5
CVE-2021-4148 MEDIUM
Linux Kernel < 5.14.16 - Denial of Service
CVSS 5.5
Details
Vulnerabilities 157
Exploit Likelihood Medium