Vulnerabilities > Insufficient Verification of Data Authenticity

DATE CVE VULNERABILITY TITLE RISK
2024-09-12 CVE-2024-42483 Insufficient Verification of Data Authenticity vulnerability in Espressif Esp-Now
ESP-NOW Component provides a connectionless Wi-Fi communication protocol.
low complexity
espressif CWE-345
6.5
2024-08-31 CVE-2022-4539 Insufficient Verification of Data Authenticity vulnerability in Miniorange web Application Firewall
The Web Application Firewall plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including, 2.1.2.
network
low complexity
miniorange CWE-345
5.3
2024-08-21 CVE-2024-7979 Insufficient Verification of Data Authenticity vulnerability in Google Chrome
Insufficient data validation in Installer in Google Chrome on Windows prior to 128.0.6613.84 allowed a local attacker to perform privilege escalation via a crafted symbolic link.
local
low complexity
google CWE-345
7.8
2024-08-21 CVE-2024-7980 Insufficient Verification of Data Authenticity vulnerability in Google Chrome
Insufficient data validation in Installer in Google Chrome on Windows prior to 128.0.6613.84 allowed a local attacker to perform privilege escalation via a crafted symbolic link.
local
low complexity
google CWE-345
7.8
2024-08-08 CVE-2023-28865 Insufficient Verification of Data Authenticity vulnerability in Dieboldnixdorf Vynamic Security Suite
Diebold Nixdorf Vynamic Security Suite (VSS) before 3.3.0 SR15, 4.0.0 SR05, 4.1.0 SR03, and 4.2.0 SR02 fails to validate the directory contents of certain directories (e.g., ensuring the expected hash sum) during the Pre-Boot Authorization (PBA) process.
low complexity
dieboldnixdorf CWE-345
6.6
2024-07-30 CVE-2024-38432 Insufficient Verification of Data Authenticity vulnerability in Matrix-Globalservices Tafnit
Matrix Tafnit v8 - CWE-646: Reliance on File Name or Extension of Externally-Supplied File
network
low complexity
matrix-globalservices CWE-345
critical
9.8
2024-07-16 CVE-2024-3173 Insufficient Verification of Data Authenticity vulnerability in Google Chrome
Insufficient data validation in Updater in Google Chrome prior to 120.0.6099.62 allowed a remote attacker to perform OS-level privilege escalation via a malicious file.
network
low complexity
google CWE-345
8.8
2024-07-05 CVE-2024-39689 Insufficient Verification of Data Authenticity vulnerability in multiple products
Certifi is a curated collection of Root Certificates for validating the trustworthiness of SSL certificates while verifying the identity of TLS hosts.
network
low complexity
certifi netapp CWE-345
7.5
2024-06-24 CVE-2024-33687 Insufficient Verification of Data Authenticity vulnerability in Omron products
Insufficient verification of data authenticity issue exists in NJ Series CPU Unit all versions and NX Series CPU Unit all versions.
network
low complexity
omron CWE-345
7.5
2024-06-21 CVE-2022-44593 Insufficient Verification of Data Authenticity vulnerability in Solidwp Solid Security
Use of Less Trusted Source vulnerability in SolidWP Solid Security allows HTTP DoS.This issue affects Solid Security: from n/a through 9.3.1.
network
low complexity
solidwp CWE-345
5.3