Vulnerabilities > Improper Verification of Cryptographic Signature

DATE CVE VULNERABILITY TITLE RISK
2022-05-12 CVE-2022-26510 Improper Verification of Cryptographic Signature vulnerability in Inhandnetworks Ir302 Firmware 3.5.37
A firmware update vulnerability exists in the iburn firmware checks functionality of InHand Networks InRouter302 V3.5.37.
network
low complexity
inhandnetworks CWE-347
6.5
2022-05-06 CVE-2022-24884 Improper Verification of Cryptographic Signature vulnerability in multiple products
ecdsautils is a tiny collection of programs used for ECDSA (keygen, sign, verify).
7.5
2022-05-03 CVE-2021-22573 Improper Verification of Cryptographic Signature vulnerability in Google Oauth Client Library for Java
The vulnerability is that IDToken verifier does not verify if token is properly signed.
network
low complexity
google CWE-347
7.3
2022-04-04 CVE-2021-32977 Improper Verification of Cryptographic Signature vulnerability in Aveva System Platform 2017/2020
AVEVA System Platform versions 2017 through 2020 R2 P01 does not verify, or incorrectly verifies, the cryptographic signature for data.
network
low complexity
aveva CWE-347
7.2
2022-04-03 CVE-2021-30066 Improper Verification of Cryptographic Signature vulnerability in multiple products
On Schneider Electric ConneXium Tofino Firewall TCSEFEA23F3F22 before 03.23, TCSEFEA23F3F20/21, and Belden Tofino Xenon Security Appliance, an arbitrary firmware image can be loaded because firmware signature verification (for a USB stick) can be bypassed.
6.8
2022-03-30 CVE-2015-3298 Improper Verification of Cryptographic Signature vulnerability in Yubico Ykneo-Openpgp 1.0.9
Yubico ykneo-openpgp before 1.0.10 has a typo in which an invalid PIN can be used.
low complexity
yubico CWE-347
8.8
2022-03-04 CVE-2021-20319 Improper Verification of Cryptographic Signature vulnerability in Redhat Coreos-Installer 0.10.0
An improper signature verification vulnerability was found in coreos-installer.
local
low complexity
redhat CWE-347
7.8
2022-03-04 CVE-2021-43392 Improper Verification of Cryptographic Signature vulnerability in ST J-Safe3 Firmware and Stsafe-J Firmware
STMicroelectronics STSAFE-J 1.1.4, J-SAFE3 1.2.5, and J-SIGN sometimes allow attackers to obtain information on cryptographic secrets.
local
low complexity
st CWE-347
6.2
2022-03-04 CVE-2021-43393 Improper Verification of Cryptographic Signature vulnerability in ST J-Safe3 Firmware and Stsafe-J Firmware
STMicroelectronics STSAFE-J 1.1.4, J-SAFE3 1.2.5, and J-SIGN sometimes allow attackers to abuse signature verification.
local
low complexity
st CWE-347
6.2
2022-02-09 CVE-2021-40045 Improper Verification of Cryptographic Signature vulnerability in Huawei Emui, Harmonyos and Magic UI
There is a vulnerability of signature verification mechanism failure in system upgrade through recovery mode.Successful exploitation of this vulnerability may affect service confidentiality.
local
low complexity
huawei CWE-347
5.5