Vulnerabilities > Improper Validation of Integrity Check Value

DATE CVE VULNERABILITY TITLE RISK
2023-12-12 CVE-2023-36650 Improper Validation of Integrity Check Value vulnerability in Prolion Cryptospike 3.0.15
A missing integrity check in the update system in ProLion CryptoSpike 3.0.15P2 allows attackers to execute OS commands as the root Linux user on the host system via forged update packages.
network
low complexity
prolion CWE-354
7.2
2023-11-21 CVE-2023-28802 Improper Validation of Integrity Check Value vulnerability in Zscaler Client Connector
An Improper Validation of Integrity Check Value in Zscaler Client Connector on Windows allows an authenticated user to disable ZIA/ZPA by interrupting the service restart from Zscaler Diagnostics.
network
low complexity
zscaler CWE-354
5.4
2023-11-14 CVE-2023-28002 Improper Validation of Integrity Check Value vulnerability in Fortinet Fortios
An improper validation of integrity check value vulnerability [CWE-354] in FortiOS 7.2.0 through 7.2.3, 7.0.0 through 7.0.12, 6.4 all versions, 6.2 all versions, 6.0 all versions and VMs may allow a local attacker with admin privileges to boot a malicious image on the device and bypass the filesystem integrity check in place.
local
low complexity
fortinet CWE-354
6.7
2023-10-19 CVE-2022-24404 Improper Validation of Integrity Check Value vulnerability in Midnightblue Tetra:Burst
Lack of cryptographic integrity check on TETRA air-interface encrypted traffic.
network
low complexity
midnightblue CWE-354
7.5
2023-10-16 CVE-2023-45150 Improper Validation of Integrity Check Value vulnerability in Nextcloud Calendar
Nextcloud calendar is a calendar app for the Nextcloud server platform.
network
low complexity
nextcloud CWE-354
4.3
2023-10-03 CVE-2023-4929 Improper Validation of Integrity Check Value vulnerability in Moxa products
All firmware versions of the NPort 5000 Series are affected by an improper validation of integrity check vulnerability.
network
low complexity
moxa CWE-354
8.8
2023-09-13 CVE-2023-20233 Improper Validation of Integrity Check Value vulnerability in Cisco IOS XR
A vulnerability in the Connectivity Fault Management (CFM) feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to incorrect processing of invalid continuity check messages (CCMs).
network
low complexity
cisco CWE-354
6.5
2023-08-29 CVE-2023-38802 Improper Validation of Integrity Check Value vulnerability in multiple products
FRRouting FRR 7.5.1 through 9.0 and Pica8 PICOS 4.3.3.2 allow a remote attacker to cause a denial of service via a crafted BGP update with a corrupted attribute 23 (Tunnel Encapsulation).
network
low complexity
frrouting pica8 debian fedoraproject CWE-354
7.5
2023-07-12 CVE-2023-33668 Improper Validation of Integrity Check Value vulnerability in Digiexam
DigiExam up to v14.0.2 lacks integrity checks for native modules, allowing attackers to access PII and takeover accounts on shared computers.
network
low complexity
digiexam CWE-354
critical
9.8
2023-07-06 CVE-2023-30673 Improper Validation of Integrity Check Value vulnerability in Samsung Smart Switch PC 4.2.220224/4.3.22083/4.3.220833
Improper validation of integrity check vulnerability in Smart Switch PC prior to version 4.3.23052_1 allows local attackers to delete arbitrary directory using directory junction.
local
low complexity
samsung CWE-354
5.5