Vulnerabilities > Download of Code Without Integrity Check

DATE CVE VULNERABILITY TITLE RISK
2020-09-11 CVE-2020-1210 Download of Code Without Integrity Check vulnerability in Microsoft products
<p>A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package.
network
low complexity
microsoft CWE-494
critical
9.9
2020-09-11 CVE-2020-1200 Download of Code Without Integrity Check vulnerability in Microsoft products
<p>A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package.
network
low complexity
microsoft CWE-494
8.6
2020-08-24 CVE-2020-7831 Download of Code Without Integrity Check vulnerability in Inogard Ebiz4U Cviewerobject1.0.5.1
A vulnerability in the web-based contract management service interface Ebiz4u of INOGARD could allow an victim user to download any file.
network
low complexity
inogard CWE-494
8.8
2020-08-06 CVE-2020-7817 Download of Code Without Integrity Check vulnerability in Raonwiz K Upload 6.2.2018.529
MyBrowserPlus downloads the files needed to run the program through the setup file (Setup.inf).
local
low complexity
raonwiz CWE-494
7.8
2020-08-03 CVE-2020-5772 Download of Code Without Integrity Check vulnerability in Teltonika-Networks Trb245 Firmware 00.02.04.01
Improper Input Validation in Teltonika firmware TRB2_R_00.02.04.01 allows a remote, authenticated attacker to gain root privileges by uploading a malicious package file.
network
high complexity
teltonika-networks CWE-494
7.5
2020-07-28 CVE-2020-10926 Download of Code Without Integrity Check vulnerability in Netgear R6700 Firmware 1.0.4.8410.0.58
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 routers.
low complexity
netgear CWE-494
8.8
2020-07-20 CVE-2020-4125 Download of Code Without Integrity Check vulnerability in IBM Marketing Operations
Using HCL Marketing Operations 9.1.2.4, 10.1.x, 11.1.0.x, a malicious attacker could download files from the RHEL environment by doing some modification in the link, giving the attacker access to confidential information.
network
low complexity
ibm CWE-494
8.1
2020-07-17 CVE-2020-7826 Download of Code Without Integrity Check vulnerability in Eyesurfer Bflyinstallerx.Ocx 1.0.0.16
EyeSurfer BflyInstallerX.ocx v1.0.0.16 and earlier versions contain a vulnerability that could allow remote files to be download by setting the arguments to the vulnerable method.
network
low complexity
eyesurfer CWE-494
critical
9.8
2020-06-16 CVE-2020-7505 Download of Code Without Integrity Check vulnerability in Schneider-Electric Easergy T300 Firmware 1.5.2
A CWE-494 Download of Code Without Integrity Check vulnerability exists in Easergy T300 (Firmware version 1.5.2 and older) which could allow an attacker to inject data with dangerous content into the firmware and execute arbitrary code on the system.
network
low complexity
schneider-electric CWE-494
7.2
2020-05-28 CVE-2020-7812 Download of Code Without Integrity Check vulnerability in Kaoni Ezhttptrans 1.0.0.70
Ezhttptrans.ocx ActiveX Control in Kaoni ezHTTPTrans 1.0.0.70 and prior versions contain a vulnerability that could allow remote attacker to download arbitrary file by setting the arguments to the activex method.
network
low complexity
kaoni CWE-494
critical
9.8