Vulnerabilities > Insufficient Verification of Data Authenticity

DATE CVE VULNERABILITY TITLE RISK
2020-08-11 CVE-2020-13178 Insufficient Verification of Data Authenticity vulnerability in Teradici Graphics Agent and Pcoip Standard Agent
A function in the Teradici PCoIP Standard Agent for Windows and Graphics Agent for Windows prior to version 20.04.1 does not properly validate the signature of an external binary, which could allow an attacker to gain elevated privileges via execution in the context of the PCoIP Agent process.
local
low complexity
teradici CWE-345
6.7
2020-08-07 CVE-2020-11985 Insufficient Verification of Data Authenticity vulnerability in Apache Http Server
IP address spoofing when proxying using mod_remoteip and mod_rewrite For configurations using proxying with mod_remoteip and certain mod_rewrite rules, an attacker could spoof their IP address for logging and PHP scripts.
network
low complexity
apache CWE-345
5.3
2020-07-28 CVE-2020-15899 Insufficient Verification of Data Authenticity vulnerability in Grin 3.0.0/3.1.0/3.1.1
Grin 3.0.0 before 4.0.0 has insufficient validation of data related to Mimblewimble.
network
low complexity
grin CWE-345
7.5
2020-07-15 CVE-2020-15699 Insufficient Verification of Data Authenticity vulnerability in Joomla Joomla!
An issue was discovered in Joomla! through 3.9.19.
network
low complexity
joomla CWE-345
5.3
2020-07-09 CVE-2020-12406 Insufficient Verification of Data Authenticity vulnerability in multiple products
Mozilla Developer Iain Ireland discovered a missing type check during unboxed objects removal, resulting in a crash.
network
low complexity
mozilla canonical CWE-345
8.8
2020-07-02 CVE-2020-12119 Insufficient Verification of Data Authenticity vulnerability in Ledger Live
Ledger Live before 2.7.0 does not handle Bitcoin's Replace-By-Fee (RBF).
network
low complexity
ledger CWE-345
8.1
2020-06-29 CVE-2019-19160 Insufficient Verification of Data Authenticity vulnerability in Cabsoftware Reportexpress Proplus
Reportexpress ProPlus contains a vulnerability that could allow an arbitrary code execution by inserted VBscript into the configure file(rxp).
network
low complexity
cabsoftware CWE-345
8.8
2020-06-25 CVE-2020-5964 Insufficient Verification of Data Authenticity vulnerability in Nvidia products
NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the service host component, in which the application resources integrity check may be missed.
local
low complexity
nvidia CWE-345
7.8
2020-06-19 CVE-2020-13272 Insufficient Verification of Data Authenticity vulnerability in Gitlab
OAuth flow missing verification checks CE/EE 12.3 and later through 13.0.1 allows unverified user to use OAuth authorization code flow
network
low complexity
gitlab CWE-345
8.8
2020-06-19 CVE-2020-13265 Insufficient Verification of Data Authenticity vulnerability in Gitlab
User email verification bypass in GitLab CE/EE 12.5 and later through 13.0.1 allows user to bypass email verification
network
low complexity
gitlab CWE-345
5.3