Vulnerabilities > Insufficient Verification of Data Authenticity

DATE CVE VULNERABILITY TITLE RISK
2020-04-13 CVE-2020-6443 Insufficient Verification of Data Authenticity vulnerability in multiple products
Insufficient data validation in developer tools in Google Chrome prior to 81.0.4044.92 allowed a remote attacker who had convinced the user to use devtools to execute arbitrary code via a crafted HTML page.
network
low complexity
google debian fedoraproject opensuse CWE-345
8.8
2020-04-13 CVE-2019-1866 Insufficient Verification of Data Authenticity vulnerability in Cisco Webex Business Suite 39
Cisco Webex Business Suite before 39.1.0 contains a vulnerability that could allow an unauthenticated, remote attacker to affect the integrity of the application.
network
high complexity
cisco CWE-345
3.7
2020-04-06 CVE-2020-10266 Insufficient Verification of Data Authenticity vulnerability in Universal-Robots Ur+
UR+ (Universal Robots+) is a platform of hardware and software component sellers, for Universal Robots robots.
network
high complexity
universal-robots CWE-345
8.1
2020-04-03 CVE-2019-18905 Insufficient Verification of Data Authenticity vulnerability in Opensuse Autoyast2 4.0.703.20.1/4.1.93.9.1
A Insufficient Verification of Data Authenticity vulnerability in autoyast2 of SUSE Linux Enterprise Server 12, SUSE Linux Enterprise Server 15 allows remote attackers to MITM connections when deprecated and unused functionality of autoyast is used to create images.
network
high complexity
opensuse CWE-345
5.9
2020-04-01 CVE-2020-11470 Insufficient Verification of Data Authenticity vulnerability in Zoom Meetings 4.6.8
Zoom Client for Meetings through 4.6.8 on macOS has the disable-library-validation entitlement, which allows a local process (with the user's privileges) to obtain unprompted microphone and camera access by loading a crafted library and thereby inheriting Zoom Client's microphone and camera access.
local
low complexity
zoom CWE-345
3.3
2020-03-24 CVE-2020-10831 Insufficient Verification of Data Authenticity vulnerability in Google Android
An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software.
network
low complexity
google CWE-345
7.5
2020-03-24 CVE-2019-20530 Insufficient Verification of Data Authenticity vulnerability in Google Android
An issue was discovered on Samsung mobile devices with N(7.1), O(8.x), P(9.0), and Q(10.0) software.
network
low complexity
google CWE-345
critical
9.8
2020-03-15 CVE-2019-17654 Insufficient Verification of Data Authenticity vulnerability in Fortinet Fortimanager
An Insufficient Verification of Data Authenticity vulnerability in FortiManager 6.2.1, 6.2.0, 6.0.6 and below may allow an unauthenticated attacker to perform a Cross-Site WebSocket Hijacking (CSWSH) attack.
network
low complexity
fortinet CWE-345
8.8
2020-03-11 CVE-2019-5161 Insufficient Verification of Data Authenticity vulnerability in Wago Pfc200 Firmware 03.00.39(12)/03.01.07(13)/03.02.02(14)
An exploitable remote code execution vulnerability exists in the Cloud Connectivity functionality of WAGO PFC200 versions 03.02.02(14), 03.01.07(13), and 03.00.39(12).
network
low complexity
wago CWE-345
critical
9.1
2020-03-10 CVE-2019-17636 Insufficient Verification of Data Authenticity vulnerability in Eclipse Theia
In Eclipse Theia versions 0.3.9 through 0.15.0, one of the default pre-packaged Theia extensions is "Mini-Browser", published as "@theia/mini-browser" on npmjs.com.
network
low complexity
eclipse CWE-345
8.1