VYPR

CWE-295

Improper Certificate Validation

BaseDraft

Description

The product does not validate, or incorrectly validates, a certificate.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-459 · CAPEC-475

CVEs mapped to this weakness (1,595)

page 77 of 80
  • CVE-2023-31486HigApr 29, 2023
    risk 0.00cvss 8.1epss 0.02

    HTTP::Tiny before 0.083, a Perl core module since 5.13.9 and available standalone on CPAN, has an insecure default TLS configuration where users must opt in to verify certificates.

  • CVE-2023-31485MedApr 29, 2023
    risk 0.00cvss 5.9epss 0.01

    GitLab::API::v4 through 0.26 does not verify TLS certificates when connecting to a GitLab server, enabling machine-in-the-middle attacks.

  • CVE-2023-31484HigApr 29, 2023
    risk 0.00cvss 8.1epss 0.02

    CPAN.pm before 2.35 does not verify TLS certificates when downloading distributions over HTTPS.

  • CVE-2021-46880CriApr 15, 2023
    risk 0.00cvss 9.8epss 0.01

    x509/x509_verify.c in LibreSSL before 3.4.2, and OpenBSD before 7.0 errata 006, allows authentication bypass because an error for an unverified certificate chain is sometimes discarded.

  • CVE-2022-48437MedApr 12, 2023
    risk 0.00cvss 5.3epss 0.00

    An issue was discovered in x509/x509_verify.c in LibreSSL before 3.6.1, and in OpenBSD before 7.2 errata 001. x509_verify_ctx_add_chain does not store errors that occur during leaf certificate verification, and therefore an incorrect error is returned. This behavior occurs when…

  • CVE-2023-29000MedApr 4, 2023
    risk 0.00cvss 5.4epss 0.00

    The Nextcloud Desktop Client is a tool to synchronize files from Nextcloud Server. Starting with version 3.0.0 and prior to version 3.7.0, by trusting that the server will return a certificate that belongs to the keypair of the user, a malicious server could get the desktop…

  • CVE-2020-36659HigJan 27, 2023
    risk 0.00cvss 8.1epss 0.00

    In Apache::Session::Browseable before 1.3.6, validity of the X.509 certificate is not checked by default when connecting to remote LDAP backends, because the default configuration of the Net::LDAPS module for Perl is used. NOTE: this can, for example, be fixed in conjunction…

  • CVE-2020-36658HigJan 27, 2023
    risk 0.00cvss 8.1epss 0.00

    In Apache::Session::LDAP before 0.5, validity of the X.509 certificate is not checked by default when connecting to remote LDAP backends, because the default configuration of the Net::LDAPS module for Perl is used. NOTE: this can, for example, be fixed in conjunction with the…

  • CVE-2022-39334LowNov 25, 2022
    risk 0.00cvss 3.9epss 0.00

    Nextcloud also ships a CLI utility called nextcloudcmd which is sometimes used for automated scripting and headless servers. Versions of nextcloudcmd prior to 3.6.1 would incorrectly trust invalid TLS certificates, which may enable a Man-in-the-middle attack that exposes…

  • CVE-2022-45391HigNov 15, 2022
    risk 0.00cvss 7.5epss 0.00

    Jenkins NS-ND Integration Performance Publisher Plugin 4.8.0.143 and earlier globally and unconditionally disables SSL/TLS certificate and hostname validation for the entire Jenkins controller JVM.

  • CVE-2022-38666HigNov 15, 2022
    risk 0.00cvss 7.5epss 0.00

    Jenkins NS-ND Integration Performance Publisher Plugin 4.8.0.146 and earlier unconditionally disables SSL/TLS certificate and hostname validation for several features.

  • CVE-2022-39264HigSep 28, 2022
    risk 0.00cvss 8.6epss 0.01

    nheko is a desktop client for the Matrix communication application. All versions below 0.10.2 are vulnerable homeservers inserting malicious secrets, which could lead to man-in-the-middle attacks. Users can upgrade to version 0.10.2 to protect against this issue. As a…

  • CVE-2022-26491MedJun 2, 2022
    risk 0.00cvss 5.9epss 0.02

    An issue was discovered in Pidgin before 2.14.9. A remote attacker who can spoof DNS responses can redirect a client connection to a malicious server. The client will perform TLS certificate verification of the malicious domain name instead of the original XMPP service domain,…

  • CVE-2022-25640HigFeb 24, 2022
    risk 0.00cvss 7.5epss 0.01

    In wolfSSL before 5.2.0, a TLS 1.3 server cannot properly enforce a requirement for mutual authentication. A client can simply omit the certificate_verify message from the handshake, and never present a certificate.

  • CVE-2022-25638MedFeb 24, 2022
    risk 0.00cvss 6.5epss 0.01

    In wolfSSL before 5.2.0, certificate validation may be bypassed during attempted authentication by a TLS 1.3 client to a TLS 1.3 server. This occurs when the sig_algo field differs between the certificate_verify message and the certificate message.

  • CVE-2022-21657MedFeb 22, 2022
    risk 0.00cvss 6.8epss 0.01

    Envoy is an open source edge and service proxy, designed for cloud-native applications. In affected versions Envoy does not restrict the set of certificates it accepts from the peer, either as a TLS client or a TLS server, to only those certificates that contain the necessary…

  • CVE-2022-21656HigFeb 22, 2022
    risk 0.00cvss 7.4epss 0.01

    Envoy is an open source edge and service proxy, designed for cloud-native applications. The default_validator.cc implementation used to implement the default certificate validation routines has a "type confusion" bug when processing subjectAltNames. This processing allows, for…

  • CVE-2022-21654HigFeb 22, 2022
    risk 0.00cvss 7.4epss 0.01

    Envoy is an open source edge and service proxy, designed for cloud-native applications. Envoy's tls allows re-use when some cert validation settings have changed from their default configuration. The only workaround for this issue is to ensure that default tls settings are used.…

  • CVE-2022-23632HigFeb 17, 2022
    risk 0.00cvss 7.4epss 0.02

    Traefik is an HTTP reverse proxy and load balancer. Prior to version 2.6.1, Traefik skips the router transport layer security (TLS) configuration when the host header is a fully qualified domain name (FQDN). For a request, the TLS configuration choice can be different than the…

  • CVE-2021-44273HigDec 23, 2021
    risk 0.00cvss 7.4epss 0.01

    e2guardian v5.4.x <= v5.4.3r is affected by missing SSL certificate validation in the SSL MITM engine. In standalone mode (i.e., acting as a proxy or a transparent proxy), with SSL MITM enabled, e2guardian, if built with OpenSSL v1.1.x, did not validate hostnames in certificates…