VYPR

CWE-295

Improper Certificate Validation

BaseDraft

Description

The product does not validate, or incorrectly validates, a certificate.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-459 · CAPEC-475

CVEs mapped to this weakness (1,509)

page 43 of 76
  • CVE-2024-32928MedAug 19, 2024
    risk 0.38cvss 5.9epss 0.00

    The libcurl CURLOPT_SSL_VERIFYPEER option was disabled on a subset of requests made by Nest production devices which enabled a potential man-in-the-middle attack on requests to Google cloud services by any host the traffic was routed through.

  • CVE-2024-41256MedJul 31, 2024
    risk 0.38cvss 5.9epss 0.00

    Default configurations in the ShareProofVerifier function of filestash v0.4 causes the application to skip the TLS certificate verification process when sending out email verification codes, possibly allowing attackers to access sensitive data via a man-in-the-middle attack.

  • CVE-2024-37865MedJul 9, 2024
    risk 0.38cvss 5.9epss 0.01

    An issue in S3Browser v.11.4.5 and v.10.9.9 and fixed in v.11.5.7 allows a remote attacker to obtain sensitive information via the S3 compatible storage component.

  • CVE-2024-25053MedJun 28, 2024
    risk 0.38cvss 5.9epss 0.00

    IBM Cognos Analytics 11.2.0, 11.2.1, 11.2.2, 11.2.3, 11.2.4, 12.0.0, 12.0.1, and 12.0.2 is vulnerable to improper certificate validation when using the IBM Planning Analytics Data Source Connection. This could allow an attacker to spoof a trusted entity by interfering in the…

  • CVE-2024-35299MedMay 16, 2024
    risk 0.38cvss 5.9epss 0.00

    In JetBrains YouTrack before 2024.1.29548 the SMTPS protocol communication lacked proper certificate hostname validation

  • CVE-2023-50949MedApr 11, 2024
    risk 0.38cvss 5.9epss 0.00

    IBM QRadar SIEM 7.5 could allow an unauthorized user to perform unauthorized actions due to improper certificate validation. IBM X-Force ID: 275706.

  • CVE-2023-47742MedMar 3, 2024
    risk 0.38cvss 5.9epss 0.00

    IBM QRadar Suite Products 1.10.12.0 through 1.10.18.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 could disclose sensitive information using man in the middle techniques due to not correctly enforcing all aspects of certificate validation in some circumstances. …

  • CVE-2023-47700MedFeb 7, 2024
    risk 0.38cvss 5.9epss 0.01

    IBM SAN Volume Controller, IBM Storwize, IBM FlashSystem and IBM Storage Virtualize 8.6 products could allow a remote attacker to spoof a trusted system that would not be correctly validated by the Storwize server. This could lead to a user connecting to a malicious host,…

  • CVE-2023-33757MedJan 25, 2024
    risk 0.38cvss 5.9epss 0.00

    A lack of SSL certificate validation in Splicecom iPCS (iOS App) v1.3.4, iPCS2 (iOS App) v2.8 and before, and iPCS (Android App) v1.8.5 and before allows attackers to eavesdrop on communications via a man-in-the-middle attack.

  • CVE-2023-50454MedDec 10, 2023
    risk 0.38cvss 5.9epss 0.00

    An issue was discovered in Zammad before 6.2.0. In several subsystems, SSL/TLS was used to establish connections to external services without proper validation of hostname and certificate authority. This is exploitable by man-in-the-middle attackers.

  • CVE-2023-42532MedNov 7, 2023
    risk 0.38cvss 5.9epss 0.00

    Improper Certificate Validation in FotaAgent prior to SMR Nov-2023 Release1 allows remote attacker to intercept the network traffic including Firmware information.

  • CVE-2023-31421MedOct 26, 2023
    risk 0.38cvss 5.9epss 0.00

    It was discovered that when acting as TLS clients, Beats, Elastic Agent, APM Server, and Fleet Server did not verify whether the server certificate is valid for the target IP address; however, certificate signature validation is still performed. More specifically, when the…

  • CVE-2023-31580MedOct 25, 2023
    risk 0.38cvss 5.9epss 0.01

    light-oauth2 before version 2.1.27 obtains the public key without any verification. This could allow attackers to authenticate to the application with a crafted JWT token.

  • CVE-2022-3761MedOct 17, 2023
    risk 0.38cvss 5.9epss 0.01

    OpenVPN Connect versions before 3.4.0.4506 (macOS) and OpenVPN Connect before 3.4.0.3100 (Windows) allows man-in-the-middle attackers to intercept configuration profile download requests which contains the users credentials

  • CVE-2023-38353MedSep 19, 2023
    risk 0.38cvss 5.9epss 0.00

    MiniTool Power Data Recovery version 11.6 and before contains an insecure in-app payment system that allows attackers to steal highly sensitive information through a man in the middle attack.

  • CVE-2023-41180MedSep 3, 2023
    risk 0.38cvss 5.9epss 0.00

    Incorrect certificate validation in InvokeHTTP on Apache NiFi MiNiFi C++ versions 0.13 to 0.14 allows an intermediary to present a forged certificate during TLS handshake negotation. The Disable Peer Verification property of InvokeHTTP was effectively flipped, disabling…

  • CVE-2023-28321MedMay 26, 2023
    risk 0.38cvss 5.9epss 0.02

    An improper certificate validation vulnerability exists in curl <v8.1.0 in the way it supports matching of wildcard patterns when listed as "Subject Alternative Name" in TLS server certificates. curl can be built to use its own name matching function for TLS rather than one…

  • CVE-2023-22367MedFeb 13, 2023
    risk 0.38cvss 5.9epss 0.01

    Ichiran App for iOS versions prior to 3.1.0 and Ichiran App for Android versions prior to 3.1.0 improperly verify server certificates, which may allow a remote unauthenticated attacker to eavesdrop on an encrypted communication via a man-in-the-middle attack.

  • CVE-2022-46496MedFeb 6, 2023
    risk 0.38cvss 5.9epss 0.01

    BTicino Door Entry HOMETOUCH for iOS 1.4.2 was discovered to be missing an SSL certificate.

  • CVE-2022-33683MedSep 23, 2022
    risk 0.38cvss 5.9epss 0.01

    Apache Pulsar Brokers and Proxies create an internal Pulsar Admin Client that does not verify peer TLS certificates, even when tlsAllowInsecureConnection is disabled via configuration. The Pulsar Admin Client's intra-cluster and geo-replication HTTPS connections are vulnerable…