Vulnerabilities > Improper Validation of Integrity Check Value

DATE CVE VULNERABILITY TITLE RISK
2020-12-15 CVE-2020-25758 Improper Validation of Integrity Check Value vulnerability in Dlink products
An issue was discovered on D-Link DSR-250 3.17 devices.
network
low complexity
dlink CWE-354
critical
9.0
2020-12-14 CVE-2020-5637 Improper Validation of Integrity Check Value vulnerability in Necplatforms Aterm Sa3500G Firmware
Improper validation of integrity check value vulnerability in Aterm SA3500G firmware versions prior to Ver.
low complexity
necplatforms CWE-354
5.2
2020-12-07 CVE-2020-5798 Improper Validation of Integrity Check Value vulnerability in Druva Insync 6.8.0
inSync Client installer for macOS versions v6.8.0 and prior could allow an attacker to gain privileges of a root user from a lower privileged user due to improper integrity checks and directory permissions.
local
low complexity
druva CWE-354
7.8
2020-11-16 CVE-2020-28656 Improper Validation of Integrity Check Value vulnerability in VW Polo Firmware 2019
The update functionality of the Discover Media infotainment system in Volkswagen Polo 2019 vehicles allows physically proximate attackers to execute arbitrary code because some unsigned parts of a metainfo file are parsed, which can cause attacker-controlled files to be written to the infotainment system and executed as root.
local
low complexity
vw CWE-354
7.2
2020-10-21 CVE-2020-26896 Improper Validation of Integrity Check Value vulnerability in Lightning Network Daemon Project Lightning Network Daemon
Prior to 0.11.0-beta, LND (Lightning Network Daemon) had a vulnerability in its invoice database.
5.8
2020-10-21 CVE-2020-26895 Improper Validation of Integrity Check Value vulnerability in Lightning Network Daemon Project Lightning Network Daemon
Prior to 0.10.0-beta, LND (Lightning Network Daemon) would have accepted a counterparty high-S signature and broadcast tx-relay invalid local commitment/HTLC transactions.
network
low complexity
lightning-network-daemon-project CWE-354
5.0
2020-10-06 CVE-2020-25862 Improper Validation of Integrity Check Value vulnerability in multiple products
In Wireshark 3.2.0 to 3.2.6, 3.0.0 to 3.0.13, and 2.6.0 to 2.6.20, the TCP dissector could crash.
7.5
2020-09-14 CVE-2020-7807 Improper Validation of Integrity Check Value vulnerability in LG products
A vulnerability that can hijack a DLL file that is loaded during products(LGPCSuite_Setup, IPSFULLHD, LG_ULTRAWIDE, ULTRA_HD_Driver Setup) installation into a DLL file that the hacker wants.
local
lg CWE-354
1.9
2020-08-26 CVE-2020-11497 Improper Validation of Integrity Check Value vulnerability in Woocommerce NAB Transact 2.1.0
An issue was discovered in the NAB Transact extension 2.1.0 for the WooCommerce plugin for WordPress.
network
low complexity
woocommerce CWE-354
5.0
2020-08-07 CVE-2020-7810 Improper Validation of Integrity Check Value vulnerability in Handysoft Hslogin2.Dll 6.7.8.4/7.3.4
hslogin2.dll ActiveX Control in Groupware contains a vulnerability that could allow remote files to be downloaded and executed by setting the arguments to the activex method.
network
handysoft CWE-354
6.8