Vulnerabilities > Improper Enforcement of Message Integrity During Transmission in a Communication Channel

DATE CVE VULNERABILITY TITLE RISK
2021-09-29 CVE-2021-41034 Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability in Eclipse CHE
The build of some language stacks of Eclipse Che version 6 includes pulling some binaries from an unsecured HTTP endpoint.
network
high complexity
eclipse CWE-924
8.1
2021-03-19 CVE-2021-21390 Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability in Minio
MinIO is an open-source high performance object storage service and it is API compatible with Amazon S3 cloud storage service.
network
high complexity
minio CWE-924
5.9
2020-06-19 CVE-2019-20844 Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 5.18.0, 5.17.2, 5.16.4, 5.15.4, and 5.9.7.
network
low complexity
mattermost CWE-924
6.5
2020-04-24 CVE-2020-5869 Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability in F5 Big-Iq Centralized Management
In BIG-IQ 5.2.0-7.0.0, high availability (HA) synchronization is not secure by TLS and may allow on-path attackers to read / modify confidential data in transit.
network
low complexity
f5 CWE-924
critical
9.1
2018-08-08 CVE-2018-14526 Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability in multiple products
An issue was discovered in rsn_supp/wpa.c in wpa_supplicant 2.0 through 2.6.
low complexity
canonical debian w1-fi CWE-924
6.5
2018-05-23 CVE-2018-7295 Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability in Square-Enix Final Fantasy XIV 4.21/4.25
ffxivlauncher.exe in Square Enix Final Fantasy XIV 4.21 and 4.25 on Windows is affected by Improper Enforcement of Message Integrity During Transmission in a Communication Channel, allowing a man-in-the-middle attacker to steal user credentials because a session retrieves global.js via http before proceeding to use https.
network
high complexity
square-enix CWE-924
8.1