CWE:
 

Topic
Date
Author
Low
Ubiquiti Networks UniFi 3.2.10 Cross Site Request Forgery
25.02.2016
Julien Ahrens


CVEMAP Search Results

CVE
Details
Description
2024-09-26
Waiting for details
CVE-2024-47123

Updating...
 

 
The goTenna Pro series use AES CTR mode for short, encrypted messages without any additional integrity checking mechanisms. This leaves messages malleable to any attacker that can access the message.

 
Waiting for details
CVE-2024-43108

Updating...
 

 
The goTenna Pro ATAK Plugin use AES CTR mode for short, encrypted messages without any additional integrity checking mechanisms. This leaves messages malleable to any attacker that can access the message.

 
2024-06-07
Waiting for details
CVE-2023-32475

Updating...
 

 
Dell BIOS contains a missing support for integrity check vulnerability. An attacker with physical access to the system could potentially bypass security mechanisms to run arbitrary code on the system.

 
2023-06-15
Waiting for details
CVE-2023-29290

Updating...
 

 
Adobe Commerce versions 2.4.6 (and earlier), 2.4.5-p2 (and earlier) and 2.4.4-p3 (and earlier) are affected by an Incorrect Authorization vulnerability that could result in a security feature bypass. An attacker could leverage this vulnerability to bypass a minor functionality. Exploitation of this issue does not require user interaction.

 
2022-08-19
Waiting for details
CVE-2022-2793

Updating...
 

 
Emerson Electric's Proficy Machine Edition Version 9.00 and prior is vulenrable to CWE-353 Missing Support for Integrity Check, and has no authentication or authorization of data packets after establishing a connection for the SRTP protocol.

 
2021-04-01
Medium
CVE-2021-28545

Updating...
 

 
Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are missing support for an integrity check. An unauthenticated attacker could leverage this vulnerability to show arbitrary content in a certified PDF without invalidating the certification. Exploitation of this issue requires user interaction in that a victim must open the tampered file.

 
Low
CVE-2021-28546

Updating...
 

 
Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are missing support for an integrity check. An unauthenticated attacker could leverage this vulnerability to modify content in a certified PDF without invalidating the certification. Exploitation of this issue requires user interaction in that a victim must open the tampered file.

 

 


Copyright 2024, cxsecurity.com

 

Back to Top