Vulnerabilities > Insufficient Verification of Data Authenticity

DATE CVE VULNERABILITY TITLE RISK
2022-08-10 CVE-2022-37008 Insufficient Verification of Data Authenticity vulnerability in Huawei Emui, Harmonyos and Magic UI
The recovery module has a vulnerability of bypassing the verification of an update package before use.
network
low complexity
huawei CWE-345
7.5
2022-07-28 CVE-2022-30315 Insufficient Verification of Data Authenticity vulnerability in Honeywell Safety Manager Firmware
Honeywell Experion PKS Safety Manager (SM and FSC) through 2022-05-06 has Insufficient Verification of Data Authenticity.
network
low complexity
honeywell CWE-345
critical
9.8
2022-07-26 CVE-2022-30269 Insufficient Verification of Data Authenticity vulnerability in Motorola Ace1000 Firmware
Motorola ACE1000 RTUs through 2022-05-02 mishandle application integrity.
network
low complexity
motorola CWE-345
8.8
2022-07-26 CVE-2022-30272 Insufficient Verification of Data Authenticity vulnerability in Motorola Ace1000 Firmware
The Motorola ACE1000 RTU through 2022-05-02 mishandles firmware integrity.
network
low complexity
motorola CWE-345
7.2
2022-07-26 CVE-2022-29958 Insufficient Verification of Data Authenticity vulnerability in Jtekt products
JTEKT TOYOPUC PLCs through 2022-04-29 do not ensure data integrity.
network
low complexity
jtekt CWE-345
critical
9.8
2022-07-14 CVE-2022-28370 Insufficient Verification of Data Authenticity vulnerability in Verizon Lvskihp Outdoorunit Firmware 3.33.101.0
On Verizon 5G Home LVSKIHP OutDoorUnit (ODU) 3.33.101.0 devices, the RPC endpoint crtc_fw_upgrade provides a means of provisioning a firmware update for the device.
network
low complexity
verizon CWE-345
7.5
2022-07-12 CVE-2022-31598 Insufficient Verification of Data Authenticity vulnerability in SAP Business Objects Business Intelligence Platform 420
Due to insufficient input validation, SAP Business Objects - version 420, allows an authenticated attacker to submit a malicious request through an allowed operation.
network
low complexity
sap CWE-345
5.4
2022-07-07 CVE-2015-5236 Insufficient Verification of Data Authenticity vulnerability in Icedtea-Web Project Icedtea-Web
It was discovered that the IcedTea-Web used codebase attribute of the <applet> tag on the HTML page that hosts Java applet in the Same Origin Policy (SOP) checks.
network
low complexity
icedtea-web-project CWE-345
7.5
2022-06-24 CVE-2022-20829 Insufficient Verification of Data Authenticity vulnerability in Cisco products
A vulnerability in the packaging of Cisco Adaptive Security Device Manager (ASDM) images and the validation of those images by Cisco Adaptive Security Appliance (ASA) Software could allow an authenticated, remote attacker with administrative privileges to upload an ASDM image that contains malicious code to a device that is running Cisco ASA Software.
network
low complexity
cisco CWE-345
7.2
2022-06-14 CVE-2022-32252 Insufficient Verification of Data Authenticity vulnerability in Siemens Sinema Remote Connect Server
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1).
local
low complexity
siemens CWE-345
7.8