Vulnerabilities > Origin Validation Error

DATE CVE VULNERABILITY TITLE RISK
2020-02-25 CVE-2020-8819 Origin Validation Error vulnerability in Cardgate Payments
An issue was discovered in the CardGate Payments plugin through 3.1.15 for WooCommerce.
network
low complexity
cardgate CWE-346
8.1
2020-02-25 CVE-2020-8818 Origin Validation Error vulnerability in multiple products
An issue was discovered in the CardGate Payments plugin through 2.0.30 for Magento 2.
network
low complexity
cardgate adobe CWE-346
8.1
2020-02-19 CVE-2019-4640 Origin Validation Error vulnerability in IBM Security Secret Server
IBM Security Secret Server 10.7 processes patches, image backups and other updates without sufficiently verifying the origin and integrity of the code which could result in an attacker executing malicious code.
network
low complexity
ibm CWE-346
critical
9.8
2020-02-11 CVE-2020-0695 Origin Validation Error vulnerability in Microsoft Office Online Server
A spoofing vulnerability exists when Office Online Server does not validate origin in cross-origin communications correctly, aka 'Microsoft Office Online Server Spoofing Vulnerability'.
network
low complexity
microsoft CWE-346
5.4
2020-01-23 CVE-2019-16517 Origin Validation Error vulnerability in Connectwise Control 19.3.25270.7185
An issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185.
network
low complexity
connectwise CWE-346
critical
9.8
2020-01-14 CVE-2020-0647 Origin Validation Error vulnerability in Microsoft Office Online Server
A spoofing vulnerability exists when Office Online does not validate origin in cross-origin communications correctly, aka 'Microsoft Office Online Spoofing Vulnerability'.
network
low complexity
microsoft CWE-346
5.4
2020-01-08 CVE-2019-11762 Origin Validation Error vulnerability in multiple products
If two same-origin documents set document.domain differently to become cross-origin, it was possible for them to call arbitrary DOM methods/getters/setters on the now-cross-origin window.
network
low complexity
mozilla canonical CWE-346
6.1
2020-01-03 CVE-2019-20329 Origin Validation Error vulnerability in Openlambda Project Openlambda 20190910
OpenLambda 2019-09-10 allows DNS rebinding attacks against the OL server for the REST API on TCP port 5000.
network
low complexity
openlambda-project CWE-346
8.1
2019-12-12 CVE-2019-5062 Origin Validation Error vulnerability in W1.Fi Hostapd 2.6
An exploitable denial-of-service vulnerability exists in the 802.11w security state handling for hostapd 2.6 connected clients with valid 802.11w sessions.
low complexity
w1-fi CWE-346
6.5
2019-12-10 CVE-2019-13740 Origin Validation Error vulnerability in multiple products
Incorrect security UI in sharing in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to perform domain spoofing via a crafted HTML page.
network
low complexity
google debian fedoraproject redhat CWE-346
6.5