Vulnerabilities > Europa > Eidas Node Integration Package

DATE CVE VULNERABILITY TITLE RISK
2019-10-30 CVE-2019-18633 Improper Certificate Validation vulnerability in Europa Eidas-Node Integration Package 2.1
European Commission eIDAS-Node Integration Package before 2.3.1 has Missing Certificate Validation because a certain ExplicitKeyTrustEvaluator return value is not checked.
network
low complexity
europa CWE-295
7.5
2019-10-30 CVE-2019-18632 Improper Certificate Validation vulnerability in Europa Eidas-Node Integration Package
European Commission eIDAS-Node Integration Package before 2.3.1 allows Certificate Faking because an attacker can sign a manipulated SAML response with a forged certificate.
network
low complexity
europa CWE-295
7.5