Vulnerabilities > Insufficient Verification of Data Authenticity

DATE CVE VULNERABILITY TITLE RISK
2021-01-13 CVE-2020-9141 Insufficient Verification of Data Authenticity vulnerability in Huawei Emui and Magic UI
There is a improper privilege management vulnerability in some Huawei smartphone.
network
low complexity
huawei CWE-345
6.4
2020-11-07 CVE-2020-16122 Insufficient Verification of Data Authenticity vulnerability in multiple products
PackageKit's apt backend mistakenly treated all local debs as trusted.
local
low complexity
packagekit-project canonical CWE-345
7.8
2020-10-22 CVE-2020-27670 Insufficient Verification of Data Authenticity vulnerability in multiple products
An issue was discovered in Xen through 4.14.x allowing x86 guest OS users to cause a denial of service (data corruption), cause a data leak, or possibly gain privileges because an AMD IOMMU page-table entry can be half-updated.
local
high complexity
xen opensuse fedoraproject debian CWE-345
7.8
2020-10-22 CVE-2019-17006 Insufficient Verification of Data Authenticity vulnerability in multiple products
In Network Security Services (NSS) before 3.46, several cryptographic primitives had missing length checks.
network
low complexity
siemens mozilla netapp CWE-345
critical
10.0
2020-10-19 CVE-2020-15262 Insufficient Verification of Data Authenticity vulnerability in Webpack-Subresource-Integrity Project Webpack-Subresource-Integrity
In webpack-subresource-integrity before version 1.5.1, all dynamically loaded chunks receive an invalid integrity hash that is ignored by the browser, and therefore the browser cannot validate their integrity.
5.0
2020-10-16 CVE-2020-1677 Insufficient Verification of Data Authenticity vulnerability in Juniper Mist Cloud UI
When SAML authentication is enabled, Juniper Networks Mist Cloud UI might incorrectly handle child elements in SAML responses, allowing a remote attacker to modify a valid SAML response without invalidating its cryptographic signature to bypass SAML authentication security controls.
network
juniper CWE-345
4.3
2020-10-16 CVE-2020-9885 Insufficient Verification of Data Authenticity vulnerability in Apple products
An issue existed in the handling of iMessage tapbacks.
local
low complexity
apple CWE-345
5.5
2020-10-16 CVE-2020-26893 Insufficient Verification of Data Authenticity vulnerability in Clamxav
An issue was discovered in ClamXAV 3 before 3.1.1.
local
low complexity
clamxav CWE-345
4.6
2020-10-12 CVE-2020-9230 Insufficient Verification of Data Authenticity vulnerability in Huawei Ws5800-10 Firmware 10.0.3.25
WS5800-10 version 10.0.3.25 has a denial of service vulnerability.
low complexity
huawei CWE-345
3.3
2020-10-12 CVE-2020-9109 Insufficient Verification of Data Authenticity vulnerability in Huawei products
There is an information disclosure vulnerability in several smartphones.
local
huawei CWE-345
1.9