VYPR

CWE-295

Improper Certificate Validation

BaseDraft

Description

The product does not validate, or incorrectly validates, a certificate.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-459 · CAPEC-475

CVEs mapped to this weakness (1,595)

page 45 of 80
  • CVE-2026-0248MedMay 13, 2026
    risk 0.38cvss 5.9epss 0.00

    An improper certificate validation vulnerability in the Prisma Access Agent® for Android and Chrome OS enables an attacker to perform a man-in-the-middle (MitM) attack to intercept VPN traffic. By presenting a certificate for any domain issued by a trusted Certificate…

  • CVE-2026-40944MedApr 21, 2026
    risk 0.38cvss —epss 0.00

    Oxia is a metadata store and coordination system. Prior to 0.16.2, the trustedCertPool() function in the TLS configuration only parses the first PEM block from CA certificate files. When a CA bundle contains multiple certificates (e.g., intermediate + root CA), only the first…

  • CVE-2026-27133MedFeb 20, 2026
    risk 0.38cvss 5.9epss 0.00

    Strimzi provides a way to run an Apache Kafka cluster on Kubernetes or OpenShift in various deployment configurations. From 0.47.0 to before 0.50.1, when a chain consisting of multiple CA (Certificate Authority) certificates is used in the trusted certificates configuration of a…

  • CVE-2026-24933MedFeb 3, 2026
    risk 0.38cvss 5.9epss 0.00

    The API communication component fails to validate the SSL/TLS certificate when sending HTTPS requests to the server. An improper certificates validation vulnerability allows an unauthenticated remote attacker can perform a Man-in-the-Middle (MitM) attack to intercept the…

  • CVE-2026-24932MedFeb 3, 2026
    risk 0.38cvss 5.9epss 0.00

    The DDNS update function in ADM fails to properly validate the hostname of the DDNS server's TLS/SSL certificate. Although the connection uses HTTPS, an improper validated TLS/SSL certificates allows a remote attacker can intercept the communication to perform a…

  • CVE-2025-13034MedJan 8, 2026
    risk 0.38cvss 5.9epss 0.00

    When using `CURLOPT_PINNEDPUBLICKEY` option with libcurl or `--pinnedpubkey` with the curl tool, curl should check the public key of the server certificate to verify the peer. This check was skipped in a certain condition that would then make curl allow the connection without…

  • CVE-2025-13052MedDec 12, 2025
    risk 0.38cvss 5.9epss 0.00

    When the user set the Notification's sender to send emails to the SMTP server via msmtp, an improper validated TLS/SSL certificates allows an attacker who can intercept network traffic between the SMTP client and server to execute a man-in-the-middle (MITM) attack, which may…

  • CVE-2025-62375MedOct 15, 2025
    risk 0.38cvss —epss 0.00

    go-witness and witness are Go modules for generating attestations. In go-witness versions 0.8.6 and earlier and witness versions 0.9.2 and earlier the AWS attestor improperly verifies AWS EC2 instance identity documents. Verification can incorrectly succeed when a signature is…

  • CVE-2025-33099MedSep 1, 2025
    risk 0.38cvss 5.9epss 0.00

    IBM Concert Software 1.0.0 through 1.1.0 could allow a remote attacker to perform unauthorized actions using man in the middle techniques due to improper certificate validation.

  • CVE-2025-36005MedJul 24, 2025
    risk 0.38cvss 5.9epss 0.00

    IBM MQ Operator LTS 2.0.0 through 2.0.29, MQ Operator CD 3.0.0, 3.0.1, 3.1.0 through 3.1.3, 3.3.0, 3.4.0, 3.4.1, 3.5.0, 3.5.1, 3.6.0, and MQ Operator SC2 3.2.0 through 3.2.13 Internet Pass-Thru could allow a malicious user to obtain sensitive information from another TLS session…

  • CVE-2025-32407MedMay 16, 2025
    risk 0.38cvss 5.9epss 0.00

    Samsung Internet for Galaxy Watch version 5.0.9, available up until Samsung Galaxy Watch 3, does not properly validate TLS certificates, allowing for an attacker to impersonate any and all websites visited by the user. This is a critical misconfiguration in the way the browser…

  • CVE-2025-20157MedMay 7, 2025
    risk 0.38cvss 5.9epss 0.00

    A vulnerability in certificate validation processing of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an unauthenticated, remote attacker to gain access to sensitive information. This vulnerability is due to improper validation of certificates that…

  • CVE-2025-0254MedMar 20, 2025
    risk 0.38cvss 5.9epss 0.00

    HCL Digital Experience components Ring API and dxclient may be vulnerable to man-in-the-middle (MitM) attacks prior to 9.5 CF226. An attacker could intercept and potentially alter communication between two parties.

  • CVE-2024-29171MedFeb 12, 2025
    risk 0.38cvss 5.9epss 0.00

    Dell BSAFE SSL-J, versions prior to 6.6 and versions 7.0 through 7.2, contains an Improper certificate verification vulnerability. A remote attacker could potentially exploit this vulnerability, leading to information disclosure.

  • CVE-2025-23091MedFeb 1, 2025
    risk 0.38cvss 5.9epss 0.00

    An Improper Certificate Validation on UniFi OS devices, with Identity Enterprise configured, could allow a malicious actor to execute a man-in-the-middle (MitM) attack during application update.

  • CVE-2024-54849MedJan 10, 2025
    risk 0.38cvss 5.9epss 0.00

    An issue in CP Plus CP-VNR-3104 B3223P22C02424 allows attackers to obtain the second RSA private key and access sensitive data or execute a man-in-the-middle attack.

  • CVE-2024-54847MedJan 10, 2025
    risk 0.38cvss 5.9epss 0.00

    An issue in CP Plus CP-VNR-3104 B3223P22C02424 allows attackers to access the Diffie-Hellman (DH) parameters and access sensitive data or execute a man-in-the-middle attack.

  • CVE-2024-54846MedJan 10, 2025
    risk 0.38cvss 5.9epss 0.00

    An issue in CP Plus CP-VNR-3104 B3223P22C02424 allows attackers to obtain the EC private key and access sensitive data or execute a man-in-the-middle attack.

  • CVE-2024-47119MedDec 18, 2024
    risk 0.38cvss 5.9epss 0.00

    IBM Storage Defender - Resiliency Service 2.0.0 through 2.0.9 does not properly validate a certificate which could allow an attacker to spoof a trusted entity by interfering in the communication path between the host and client.

  • CVE-2024-43177MedOct 22, 2024
    risk 0.38cvss 5.9epss 0.00

    IBM Concert 1.0.0 and 1.0.1 vulnerable to attacks that rely on the use of cookies without the SameSite attribute.