Vulnerabilities > Insufficient Verification of Data Authenticity

DATE CVE VULNERABILITY TITLE RISK
2021-06-04 CVE-2021-33840 Insufficient Verification of Data Authenticity vulnerability in Luca-App Luca
The server in Luca through 1.1.14 allows remote attackers to cause a denial of service (insertion of many fake records related to COVID-19) because Phone Number data lacks a digital signature.
network
low complexity
luca-app CWE-345
7.5
2021-06-02 CVE-2021-28678 Insufficient Verification of Data Authenticity vulnerability in multiple products
An issue was discovered in Pillow before 8.2.0.
local
low complexity
python fedoraproject CWE-345
5.5
2021-05-24 CVE-2020-28900 Insufficient Verification of Data Authenticity vulnerability in Nagios Fusion and Nagios XI
Insufficient Verification of Data Authenticity in Nagios Fusion 4.1.8 and earlier and Nagios XI 5.7.5 and earlier allows for Escalation of Privileges or Code Execution as root via vectors related to an untrusted update package to upgrade_to_latest.sh.
network
low complexity
nagios CWE-345
critical
9.8
2021-05-20 CVE-2021-22339 Insufficient Verification of Data Authenticity vulnerability in Huawei Manageone
There is a denial of service vulnerability in some versions of ManageOne.
network
low complexity
huawei CWE-345
6.5
2021-05-20 CVE-2020-24395 Insufficient Verification of Data Authenticity vulnerability in Hom.Ee Brain Cube Core 2.28.2/2.28.4
The USB firmware update script of homee Brain Cube v2 (2.28.2 and 2.28.4) devices allows an attacker with physical access to install compromised firmware.
low complexity
hom-ee CWE-345
6.8
2021-05-11 CVE-2021-30005 Insufficient Verification of Data Authenticity vulnerability in Jetbrains Pycharm
In JetBrains PyCharm before 2020.3.4, local code execution was possible because of insufficient checks when getting the project from VCS.
local
low complexity
jetbrains CWE-345
7.8
2021-05-03 CVE-2021-29239 Insufficient Verification of Data Authenticity vulnerability in Codesys Development System
CODESYS Development System 3 before 3.5.17.0 displays or executes malicious documents or files embedded in libraries without first checking their validity.
local
low complexity
codesys CWE-345
7.8
2021-04-26 CVE-2021-31783 Insufficient Verification of Data Authenticity vulnerability in Piwigo Localfiles Editor
show_default.php in the LocalFilesEditor extension before 11.4.0.1 for Piwigo allows Local File Inclusion because the file parameter is not validated with a proper regular-expression check.
network
low complexity
piwigo CWE-345
7.5
2021-04-20 CVE-2021-29462 Insufficient Verification of Data Authenticity vulnerability in Pupnp Project Pupnp
The Portable SDK for UPnP Devices is an SDK for development of UPnP device and control point applications.
network
low complexity
pupnp-project CWE-345
critical
9.8
2021-02-01 CVE-2021-3349 Insufficient Verification of Data Authenticity vulnerability in Gnome Evolution
GNOME Evolution through 3.38.3 produces a "Valid signature" message for an unknown identifier on a previously trusted key because Evolution does not retrieve enough information from the GnuPG API.
local
low complexity
gnome CWE-345
3.3