Vulnerabilities > Insufficient Verification of Data Authenticity

DATE CVE VULNERABILITY TITLE RISK
2023-02-09 CVE-2023-21441 Insufficient Verification of Data Authenticity vulnerability in Samsung Android 10.0/11.0
Insufficient Verification of Data Authenticity vulnerability in Routine prior to versions 2.6.30.6 in Android Q(10), 3.1.21.10 in Android R(11) and 3.5.2.23 in Android S(12) allows local attacker to access protected files via unused code.
local
low complexity
samsung CWE-345
5.5
2023-01-30 CVE-2023-22315 Insufficient Verification of Data Authenticity vulnerability in Snapav Wattbox Wb-300-Ip-3 Firmware Wb10.9A17
Snap One Wattbox WB-300-IP-3 versions WB10.9a17 and prior use a proprietary local area network (LAN) protocol that does not verify updates to the device.
local
low complexity
snapav CWE-345
7.8
2023-01-12 CVE-2022-46370 Insufficient Verification of Data Authenticity vulnerability in Maxum Rumpus
Rumpus - FTP server version 9.0.7.1 Improper Token Verification– vulnerability may allow bypassing identity verification.
network
low complexity
maxum CWE-345
7.5
2023-01-11 CVE-2021-26396 Insufficient Verification of Data Authenticity vulnerability in AMD products
Insufficient validation of address mapping to IO in ASP (AMD Secure Processor) may result in a loss of memory integrity in the SNP guest.
local
low complexity
amd CWE-345
4.4
2022-12-28 CVE-2022-3346 Insufficient Verification of Data Authenticity vulnerability in Go-Resolver Project Go-Resolver
DNSSEC validation is not performed correctly.
network
low complexity
go-resolver-project CWE-345
6.5
2022-12-28 CVE-2022-3347 Insufficient Verification of Data Authenticity vulnerability in Go-Resolver Project Go-Resolver
DNSSEC validation is not performed correctly.
network
low complexity
go-resolver-project CWE-345
7.5
2022-12-26 CVE-2022-30260 Insufficient Verification of Data Authenticity vulnerability in Emerson products
Emerson DeltaV Distributed Control System (DCS) has insufficient verification of firmware integrity (an inadequate checksum approach, and no signature).
local
low complexity
emerson CWE-345
7.8
2022-12-22 CVE-2022-23556 Insufficient Verification of Data Authenticity vulnerability in Codeigniter
CodeIgniter is a PHP full-stack web framework.
network
low complexity
codeigniter CWE-345
7.5
2022-12-16 CVE-2022-26579 Insufficient Verification of Data Authenticity vulnerability in Paxtechnology Paydroid 7.1.1Virgov04.3.26T120210419
PAX A930 device with PayDroid_7.1.1_Virgo_V04.3.26T1_20210419 can allow a root privileged attacker to install unsigned packages.
local
low complexity
paxtechnology CWE-345
6.0
2022-12-16 CVE-2022-41960 Insufficient Verification of Data Authenticity vulnerability in Bigbluebutton
BigBlueButton is an open source web conferencing system.
network
low complexity
bigbluebutton CWE-345
4.3