Vulnerabilities > Improper Certificate Validation

DATE CVE VULNERABILITY TITLE RISK
2023-10-13 CVE-2023-4499 Improper Certificate Validation vulnerability in HP Thinupdate
A potential security vulnerability has been identified in the HP ThinUpdate utility (also known as HP Recovery Image and Software Download Tool) which may lead to information disclosure.
network
low complexity
hp CWE-295
7.5
2023-10-12 CVE-2023-5554 Improper Certificate Validation vulnerability in Linecorp Line
Lack of TLS certificate verification in log transmission of a financial module within LINE Client for iOS prior to 13.16.0.
network
low complexity
linecorp CWE-295
critical
9.8
2023-10-09 CVE-2023-45613 Improper Certificate Validation vulnerability in Jetbrains Ktor
In JetBrains Ktor before 2.3.5 server certificates were not verified
network
low complexity
jetbrains CWE-295
critical
9.1
2023-10-04 CVE-2023-2422 Improper Certificate Validation vulnerability in Redhat products
A flaw was found in Keycloak.
network
low complexity
redhat CWE-295
7.1
2023-10-04 CVE-2023-4586 Improper Certificate Validation vulnerability in multiple products
A vulnerability was found in the Hot Rod client.
network
high complexity
redhat infinispan CWE-295
7.4
2023-09-21 CVE-2023-41991 Improper Certificate Validation vulnerability in Apple Iphone OS and Macos
A certificate validation issue was addressed.
local
low complexity
apple CWE-295
5.5
2023-09-19 CVE-2023-38351 Improper Certificate Validation vulnerability in Minitool Partition Wizard 12.8
MiniTool Partition Wizard 12.8 contains an insecure installation mechanism that allows attackers to achieve remote code execution through a man in the middle attack.
network
high complexity
minitool CWE-295
8.1
2023-09-19 CVE-2023-38352 Improper Certificate Validation vulnerability in Minitool Partition Wizard 12.8
MiniTool Partition Wizard 12.8 contains an insecure update mechanism that allows attackers to achieve remote code execution through a man in the middle attack.
network
high complexity
minitool CWE-295
8.1
2023-09-19 CVE-2023-38353 Improper Certificate Validation vulnerability in Minitool Power Data Recovery 11.5/11.6
MiniTool Power Data Recovery version 11.6 and before contains an insecure in-app payment system that allows attackers to steal highly sensitive information through a man in the middle attack.
network
high complexity
minitool CWE-295
5.9
2023-09-19 CVE-2023-38354 Improper Certificate Validation vulnerability in Minitool Shadowmaker 4.1
MiniTool Shadow Maker version 4.1 contains an insecure installation process that allows attackers to achieve remote code execution through a man in the middle attack.
network
high complexity
minitool CWE-295
8.1