Vulnerabilities > Download of Code Without Integrity Check

DATE CVE VULNERABILITY TITLE RISK
2020-07-17 CVE-2020-7826 Download of Code Without Integrity Check vulnerability in Eyesurfer Bflyinstallerx.Ocx
EyeSurfer BflyInstallerX.ocx v1.0.0.16 and earlier versions contain a vulnerability that could allow remote files to be download by setting the arguments to the vulnerable method.
network
low complexity
eyesurfer CWE-494
7.5
2020-06-16 CVE-2020-7505 Download of Code Without Integrity Check vulnerability in Schneider-Electric Easergy T300 Firmware 1.5.2
A CWE-494 Download of Code Without Integrity Check vulnerability exists in Easergy T300 (Firmware version 1.5.2 and older) which could allow an attacker to inject data with dangerous content into the firmware and execute arbitrary code on the system.
network
low complexity
schneider-electric CWE-494
critical
9.0
2020-05-28 CVE-2020-7812 Download of Code Without Integrity Check vulnerability in Kaoni Ezhttptrans 1.0.0.70
Ezhttptrans.ocx ActiveX Control in Kaoni ezHTTPTrans 1.0.0.70 and prior versions contain a vulnerability that could allow remote attacker to download arbitrary file by setting the arguments to the activex method.
network
low complexity
kaoni CWE-494
7.5
2020-05-22 CVE-2020-7813 Download of Code Without Integrity Check vulnerability in Kaoni Ezhttptrans 1.0.0.70
Ezhttptrans.ocx ActiveX Control in Kaoni ezHTTPTrans 1.0.0.70 and prior versions contain a vulnerability that could allow remote attacker to download and execute arbitrary file by setting the arguments to the activex method.
network
low complexity
kaoni CWE-494
7.5
2020-05-07 CVE-2020-9474 Download of Code Without Integrity Check vulnerability in Siedle SG 150-0 Firmware 1.1.0
The S.
network
low complexity
siedle CWE-494
critical
9.0
2020-05-06 CVE-2020-7806 Download of Code Without Integrity Check vulnerability in Tobesoft Xplatform
Tobesoft Xplatform 9.2.2.250 and earlier version have an arbitrary code execution vulnerability by using method supported by Xplatform ActiveX Control.
network
low complexity
tobesoft CWE-494
7.5
2020-04-29 CVE-2019-19165 Download of Code Without Integrity Check vulnerability in Inogard Activex
AxECM.cab(ActiveX Control) in Inogard Ebiz4u contains a vulnerability that could allow remote files to be downloaded and executed by setting arguments to the activeX method.
network
low complexity
inogard microsoft CWE-494
6.5
2020-04-23 CVE-2020-5867 Download of Code Without Integrity Check vulnerability in multiple products
In versions prior to 3.3.0, the NGINX Controller Agent installer script 'install.sh' uses HTTP instead of HTTPS to check and install packages
network
f5 netapp CWE-494
6.8
2020-03-23 CVE-2020-9759 Download of Code Without Integrity Check vulnerability in LG Webos
A Vulnerability of LG Electronic web OS TV Emulator could allow an attacker to escalate privileges and overwrite certain files.
network
lg CWE-494
critical
9.3
2020-03-03 CVE-2020-9751 Download of Code Without Integrity Check vulnerability in Naver Cloud Explorer
Naver Cloud Explorer before 2.2.2.11 allows the system to download an arbitrary file from the attacker's server and execute it during the upgrade.
network
low complexity
naver CWE-494
6.4