Vulnerabilities > Improper Verification of Cryptographic Signature

DATE CVE VULNERABILITY TITLE RISK
2022-07-26 CVE-2022-31206 Improper Verification of Cryptographic Signature vulnerability in Omron products
The Omron SYSMAC Nx product family PLCs (NJ series, NY series, NX series, and PMAC series) through 2022-005-18 lack cryptographic authentication.
network
low complexity
omron CWE-347
critical
9.8
2022-07-26 CVE-2022-31207 Improper Verification of Cryptographic Signature vulnerability in Omron products
The Omron SYSMAC Cx product family PLCs (CS series, CJ series, and CP series) through 2022-05-18 lack cryptographic authentication.
network
low complexity
omron CWE-347
critical
9.8
2022-07-22 CVE-2022-31172 Improper Verification of Cryptographic Signature vulnerability in Openzeppelin Contracts
OpenZeppelin Contracts is a library for smart contract development.
network
low complexity
openzeppelin CWE-347
7.5
2022-07-14 CVE-2022-31156 Improper Verification of Cryptographic Signature vulnerability in Gradle
Gradle is a build tool.
network
high complexity
gradle CWE-347
4.4
2022-07-01 CVE-2022-25898 Improper Verification of Cryptographic Signature vulnerability in Jsrsasign Project Jsrsasign
The package jsrsasign before 10.5.25 are vulnerable to Improper Verification of Cryptographic Signature when JWS or JWT signature with non Base64URL encoding special characters or number escaped characters may be validated as valid by mistake.
network
low complexity
jsrsasign-project CWE-347
critical
9.8
2022-05-12 CVE-2022-26510 Improper Verification of Cryptographic Signature vulnerability in Inhandnetworks Ir302 Firmware 3.5.37
A firmware update vulnerability exists in the iburn firmware checks functionality of InHand Networks InRouter302 V3.5.37.
network
low complexity
inhandnetworks CWE-347
6.5
2022-05-06 CVE-2022-24884 Improper Verification of Cryptographic Signature vulnerability in multiple products
ecdsautils is a tiny collection of programs used for ECDSA (keygen, sign, verify).
7.5
2022-05-03 CVE-2021-22573 Improper Verification of Cryptographic Signature vulnerability in Google Oauth Client Library for Java
The vulnerability is that IDToken verifier does not verify if token is properly signed.
network
low complexity
google CWE-347
7.3
2022-04-04 CVE-2021-32977 Improper Verification of Cryptographic Signature vulnerability in Aveva System Platform 2017/2020
AVEVA System Platform versions 2017 through 2020 R2 P01 does not verify, or incorrectly verifies, the cryptographic signature for data.
network
low complexity
aveva CWE-347
7.2
2022-04-03 CVE-2021-30066 Improper Verification of Cryptographic Signature vulnerability in multiple products
On Schneider Electric ConneXium Tofino Firewall TCSEFEA23F3F22 before 03.23, TCSEFEA23F3F20/21, and Belden Tofino Xenon Security Appliance, an arbitrary firmware image can be loaded because firmware signature verification (for a USB stick) can be bypassed.
6.8