Vulnerabilities > Download of Code Without Integrity Check

DATE CVE VULNERABILITY TITLE RISK
2021-08-11 CVE-2021-38588 Download of Code Without Integrity Check vulnerability in Cpanel
In cPanel before 96.0.13, fix_cpanel_perl lacks verification of the integrity of downloads (SEC-587).
network
high complexity
cpanel CWE-494
8.1
2021-06-06 CVE-2021-33879 Download of Code Without Integrity Check vulnerability in Tencent Gameloop
Tencent GameLoop before 4.1.21.90 downloaded updates over an insecure HTTP connection.
network
high complexity
tencent CWE-494
8.1
2020-12-03 CVE-2020-2320 Download of Code Without Integrity Check vulnerability in Jenkins Installation Manager Tool
Jenkins Plugin Installation Manager Tool 2.1.3 and earlier does not verify plugin downloads.
network
low complexity
jenkins CWE-494
critical
9.8
2020-12-02 CVE-2020-25266 Download of Code Without Integrity Check vulnerability in Appimage Appimaged
AppImage appimaged before 1.0.3 does not properly check whether a downloaded file is a valid appimage.
local
low complexity
appimage CWE-494
5.5
2020-11-24 CVE-2020-28332 Download of Code Without Integrity Check vulnerability in Barco Wepresent Wipg-1600W Firmware 2.5.1.8
Barco wePresent WiPG-1600W devices download code without an Integrity Check.
network
low complexity
barco CWE-494
critical
9.8
2020-09-24 CVE-2020-15604 Download of Code Without Integrity Check vulnerability in Trendmicro products
An incomplete SSL server certification validation vulnerability in the Trend Micro Security 2019 (v15) consumer family of products could allow an attacker to combine this vulnerability with another attack to trick an affected client into downloading a malicious update instead of the expected one.
network
low complexity
trendmicro CWE-494
7.5
2020-08-24 CVE-2020-7831 Download of Code Without Integrity Check vulnerability in Inogard Ebiz4U Cviewerobject1.0.5.1
A vulnerability in the web-based contract management service interface Ebiz4u of INOGARD could allow an victim user to download any file.
network
low complexity
inogard CWE-494
8.8
2020-08-06 CVE-2020-7817 Download of Code Without Integrity Check vulnerability in Raonwiz K Upload 6.2.2018.529
MyBrowserPlus downloads the files needed to run the program through the setup file (Setup.inf).
local
low complexity
raonwiz CWE-494
7.8
2020-08-03 CVE-2020-5772 Download of Code Without Integrity Check vulnerability in Teltonika-Networks Trb245 Firmware 00.02.04.01
Improper Input Validation in Teltonika firmware TRB2_R_00.02.04.01 allows a remote, authenticated attacker to gain root privileges by uploading a malicious package file.
network
high complexity
teltonika-networks CWE-494
7.5
2020-07-20 CVE-2020-4125 Download of Code Without Integrity Check vulnerability in IBM Marketing Operations
Using HCL Marketing Operations 9.1.2.4, 10.1.x, 11.1.0.x, a malicious attacker could download files from the RHEL environment by doing some modification in the link, giving the attacker access to confidential information.
network
low complexity
ibm CWE-494
8.1