Vulnerabilities > Insufficient Verification of Data Authenticity

DATE CVE VULNERABILITY TITLE RISK
2023-05-09 CVE-2022-44420 Insufficient Verification of Data Authenticity vulnerability in Google Android
In modem, there is a possible missing verification of HashMME value in Security Mode Command.
local
low complexity
google CWE-345
5.5
2023-04-18 CVE-2023-28863 Insufficient Verification of Data Authenticity vulnerability in AMI Megarac Sp-X 12/13
AMI MegaRAC SPx12 and SPx13 devices have Insufficient Verification of Data Authenticity.
network
low complexity
ami CWE-345
critical
9.1
2023-04-13 CVE-2023-27748 Insufficient Verification of Data Authenticity vulnerability in Blackvue Dr750-2Ch IR LTE Firmware and Dr750-2Ch LTE Firmware
BlackVue DR750-2CH LTE v.1.012_2022.10.26 does not employ authenticity check for uploaded firmware.
network
low complexity
blackvue CWE-345
critical
9.8
2023-04-10 CVE-2023-26467 Insufficient Verification of Data Authenticity vulnerability in Pega Synchronization Engine
A man in the middle can redirect traffic to a malicious server in a compromised configuration.
network
high complexity
pega CWE-345
5.4
2023-03-29 CVE-2022-48431 Insufficient Verification of Data Authenticity vulnerability in Jetbrains Intellij Idea
In JetBrains IntelliJ IDEA before 2023.1 in some cases, Gradle and Maven projects could be imported without the “Trust Project” confirmation.
local
low complexity
jetbrains CWE-345
7.8
2023-03-13 CVE-2023-0350 Insufficient Verification of Data Authenticity vulnerability in Akuvox E11 Firmware
Akuvox E11 does not ensure that a file extension is associated with the file provided.
network
low complexity
akuvox CWE-345
6.5
2023-02-09 CVE-2023-21441 Insufficient Verification of Data Authenticity vulnerability in Samsung Android 10.0/11.0
Insufficient Verification of Data Authenticity vulnerability in Routine prior to versions 2.6.30.6 in Android Q(10), 3.1.21.10 in Android R(11) and 3.5.2.23 in Android S(12) allows local attacker to access protected files via unused code.
local
low complexity
samsung CWE-345
5.5
2023-01-12 CVE-2022-46370 Insufficient Verification of Data Authenticity vulnerability in Maxum Rumpus
Rumpus - FTP server version 9.0.7.1 Improper Token Verification– vulnerability may allow bypassing identity verification.
network
low complexity
maxum CWE-345
7.5
2023-01-11 CVE-2021-26396 Insufficient Verification of Data Authenticity vulnerability in AMD products
Insufficient validation of address mapping to IO in ASP (AMD Secure Processor) may result in a loss of memory integrity in the SNP guest.
local
low complexity
amd CWE-345
4.4
2022-12-28 CVE-2022-3346 Insufficient Verification of Data Authenticity vulnerability in Go-Resolver Project Go-Resolver
DNSSEC validation is not performed correctly.
network
low complexity
go-resolver-project CWE-345
6.5