Vulnerabilities > Improper Verification of Cryptographic Signature

DATE CVE VULNERABILITY TITLE RISK
2019-05-15 CVE-2019-1812 Improper Verification of Cryptographic Signature vulnerability in Cisco Nx-Os
A vulnerability in the Image Signature Verification feature of Cisco NX-OS Software could allow an authenticated, local attacker with administrator-level credentials to install a malicious software image on an affected device.
local
low complexity
cisco CWE-347
6.7
2019-05-15 CVE-2019-1811 Improper Verification of Cryptographic Signature vulnerability in Cisco Nx-Os
A vulnerability in the Image Signature Verification feature of Cisco NX-OS Software could allow an authenticated, local attacker with administrator-level credentials to install a malicious software image on an affected device.
local
low complexity
cisco CWE-347
6.7
2019-05-15 CVE-2019-1810 Improper Verification of Cryptographic Signature vulnerability in Cisco Nx-Os
A vulnerability in the Image Signature Verification feature used in an NX-OS CLI command in Cisco Nexus 3000 Series and 9000 Series Switches could allow an authenticated, local attacker with administrator-level credentials to install a malicious software image on an affected device.
local
low complexity
cisco CWE-347
6.7
2019-05-15 CVE-2019-1809 Improper Verification of Cryptographic Signature vulnerability in Cisco Nx-Os
A vulnerability in the Image Signature Verification feature of Cisco NX-OS Software could allow an authenticated, local attacker with administrator-level credentials to install a malicious software patch on an affected device.
local
low complexity
cisco CWE-347
6.7
2019-05-15 CVE-2019-1808 Improper Verification of Cryptographic Signature vulnerability in Cisco Nx-Os
A vulnerability in the Image Signature Verification feature of Cisco NX-OS Software could allow an authenticated, local attacker with administrator-level credentials to install a malicious software patch on an affected device.
local
low complexity
cisco CWE-347
4.4
2019-05-15 CVE-2019-1728 Improper Verification of Cryptographic Signature vulnerability in Cisco Nx-Os
A vulnerability in the Secure Configuration Validation functionality of Cisco FXOS Software and Cisco NX-OS Software could allow an authenticated, local attacker to run arbitrary commands at system boot time with the privileges of root.
local
low complexity
cisco CWE-347
7.2
2019-04-26 CVE-2018-18509 Improper Verification of Cryptographic Signature vulnerability in Mozilla Thunderbird
A flaw during verification of certain S/MIME signatures causes emails to be shown in Thunderbird as having a valid digital signature, even if the shown message contents aren't covered by the signature.
network
low complexity
mozilla CWE-347
5.0
2019-04-11 CVE-2019-6318 Improper Verification of Cryptographic Signature vulnerability in HP products
HP LaserJet Enterprise printers, HP PageWide Enterprise printers, HP LaserJet Managed printers, HP Officejet Enterprise printers have an insufficient solution bundle signature validation that potentially allows execution of arbitrary code.
network
low complexity
hp CWE-347
7.5
2019-03-27 CVE-2018-5923 Improper Verification of Cryptographic Signature vulnerability in HP products
In HP LaserJet Enterprise, HP PageWide Enterprise, HP LaserJet Managed, and HP OfficeJet Enterprise Printers, solution application signature checking may allow potential execution of arbitrary code.
network
low complexity
hp CWE-347
7.5
2019-03-21 CVE-2018-3968 Improper Verification of Cryptographic Signature vulnerability in Denx U-Boot
An exploitable vulnerability exists in the verified boot protection of the Das U-Boot from version 2013.07-rc1 to 2014.07-rc2.
local
high complexity
denx CWE-347
7.0