Vulnerabilities > Europa

DATE CVE VULNERABILITY TITLE RISK
2022-01-21 CVE-2021-40855 Improper Certificate Validation vulnerability in Europa Technical Specifications for Digital Covid Certificates 1.0
The EU Technical Specifications for Digital COVID Certificates before 1.1 mishandle certificate governance.
network
low complexity
europa CWE-295
critical
9.8
2019-10-30 CVE-2019-18633 Improper Certificate Validation vulnerability in Europa Eidas-Node Integration Package 2.1
European Commission eIDAS-Node Integration Package before 2.3.1 has Missing Certificate Validation because a certain ExplicitKeyTrustEvaluator return value is not checked.
network
low complexity
europa CWE-295
critical
9.8
2019-10-30 CVE-2019-18632 Improper Certificate Validation vulnerability in Europa Eidas-Node Integration Package
European Commission eIDAS-Node Integration Package before 2.3.1 allows Certificate Faking because an attacker can sign a manipulated SAML response with a forged certificate.
network
low complexity
europa CWE-295
critical
9.8