Vulnerabilities > Improper Validation of Integrity Check Value

DATE CVE VULNERABILITY TITLE RISK
2021-05-07 CVE-2020-14009 Improper Validation of Integrity Check Value vulnerability in Proofpoint Enterprise Protection 8.14.2
Proofpoint Enterprise Protection (PPS/PoD) before 8.16.4 contains a vulnerability that could allow an attacker to deliver an email message with a malicious attachment that bypasses scanning and file-blocking rules.
6.8
2021-04-26 CVE-2021-20709 Improper Validation of Integrity Check Value vulnerability in NEC products
Improper validation of integrity check value vulnerability in NEC Aterm WF1200CR firmware Ver1.3.2 and earlier, Aterm WG1200CR firmware Ver1.3.3 and earlier, and Aterm WG2600HS firmware Ver1.5.1 and earlier allows an attacker with an administrative privilege to execute arbitrary OS commands by sending a specially crafted request to a specific URL.
network
low complexity
nec CWE-354
critical
9.0
2021-02-06 CVE-2020-9118 Improper Validation of Integrity Check Value vulnerability in Huawei Ais-Bw80H-00 Firmware
There is an insufficient integrity check vulnerability in Huawei Sound X Product.
local
low complexity
huawei CWE-354
4.6
2021-01-28 CVE-2021-20184 Improper Validation of Integrity Check Value vulnerability in Moodle
It was found in Moodle before version 3.10.1, 3.9.4 and 3.8.7 that a insufficient capability checks in some grade related web services meant students were able to view other students grades.
network
low complexity
moodle CWE-354
4.0
2020-12-15 CVE-2020-25758 Improper Validation of Integrity Check Value vulnerability in Dlink products
An issue was discovered on D-Link DSR-250 3.17 devices.
network
low complexity
dlink CWE-354
critical
9.0
2020-12-14 CVE-2020-5637 Improper Validation of Integrity Check Value vulnerability in Necplatforms Aterm Sa3500G Firmware
Improper validation of integrity check value vulnerability in Aterm SA3500G firmware versions prior to Ver.
low complexity
necplatforms CWE-354
5.2
2020-12-07 CVE-2020-5798 Improper Validation of Integrity Check Value vulnerability in Druva Insync 6.8.0
inSync Client installer for macOS versions v6.8.0 and prior could allow an attacker to gain privileges of a root user from a lower privileged user due to improper integrity checks and directory permissions.
local
low complexity
druva CWE-354
7.8
2020-11-16 CVE-2020-28656 Improper Validation of Integrity Check Value vulnerability in VW Polo Firmware 2019
The update functionality of the Discover Media infotainment system in Volkswagen Polo 2019 vehicles allows physically proximate attackers to execute arbitrary code because some unsigned parts of a metainfo file are parsed, which can cause attacker-controlled files to be written to the infotainment system and executed as root.
local
low complexity
vw CWE-354
7.2
2020-10-21 CVE-2020-26896 Improper Validation of Integrity Check Value vulnerability in Lightning Network Daemon Project Lightning Network Daemon
Prior to 0.11.0-beta, LND (Lightning Network Daemon) had a vulnerability in its invoice database.
5.8
2020-10-21 CVE-2020-26895 Improper Validation of Integrity Check Value vulnerability in Lightning Network Daemon Project Lightning Network Daemon
Prior to 0.10.0-beta, LND (Lightning Network Daemon) would have accepted a counterparty high-S signature and broadcast tx-relay invalid local commitment/HTLC transactions.
network
low complexity
lightning-network-daemon-project CWE-354
5.0