Перейти к содержимому
Noroxi

CWE-924 · 35 записей

Improper Enforcement of Message Integrity During Transmission in a Communication Channel

CVE этого класса

35 записей

  • CVE-2025-29628
    37Наблюдать

    A Gardyn Azure IoT Hub connection string is downloaded over an insecure HTTP connection in Gardyn Home Kit firmware before master.619, Home

    КритическаяCVSS 9,4Proof of conceptEPSS 0 %

    gardyn · home kit firmware25 июл. 2025 г.

  • CVE-2020-5869
    36Наблюдать

    In BIG-IQ 5.2.0-7.0.0, high availability (HA) synchronization is not secure by TLS and may allow on-path attackers to read / modify confiden

    КритическаяCVSS 9,1Эксплойта нетEPSS 0 %

    f5 · big-iq centralized management24 апр. 2020 г.

  • CVE-2024-44730
    36Наблюдать

    Incorrect access control in the function handleDataChannelChat(dataMessage) of Mirotalk before commit c21d58 allows attackers to forge chat

    КритическаяCVSS 9,1Эксплойта нетEPSS 0 %

    11 окт. 2024 г.

  • CVE-2025-0592
    35Наблюдать

    SICK Lector8xx and InspectorP8xx vulnerable for code execution

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    sick ag · sick lector8xx14 февр. 2025 г.

  • CVE-2019-25719
    35Наблюдать

    Dräger Infinity M540 VG4.1.1 Spoofing and DoS via Network Message Handling

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    dräger · infinity acute care system2 июн. 2026 г.

  • CVE-2021-34793
    34Наблюдать

    Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Transparent Mode Denial of Service Vulnerability

    ВысокаяCVSS 8,6Эксплойта нетEPSS 1 %

    cisco · adaptive security appliance27 окт. 2021 г.

  • CVE-2018-7295
    32Наблюдать

    ffxivlauncher.exe in Square Enix Final Fantasy XIV 4.21 and 4.25 on Windows is affected by Improper Enforcement of Message Integrity During

    ВысокаяCVSS 8,1Эксплойта нетEPSS 0 %

    square-enix · final fantasy xiv23 мая 2018 г.

  • CVE-2021-41034
    32Наблюдать

    The build of some language stacks of Eclipse Che version 6 includes pulling some binaries from an unsecured HTTP endpoint.

    ВысокаяCVSS 8,1Эксплойта нетEPSS 0 %

    eclipse · che29 сент. 2021 г.

  • CVE-2023-6408
    32Наблюдать

    CWE-924: Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability exists that could cause a d

    ВысокаяCVSS 8,1Эксплойта нетEPSS 0 %

    schneider-electric · modicon m340 bmxp341000 firmware14 февр. 2024 г.

  • CVE-2023-2885
    32Наблюдать

    Channel Accessible by Non-Endpoint in CBOT's Chatbot

    ВысокаяCVSS 8,1Эксплойта нетEPSS 0 %

    cbot · cbot core25 мая 2023 г.

  • CVE-2020-11639
    31Наблюдать

    Insufficient access control on Inter process communication,

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    abb · advabuild23 июл. 2024 г.

  • CVE-2022-3166
    30Наблюдать

    MicroLogix 1100 & 1400 Product Web Server Application Vulnerable to Denial-Of-Service Condition Attack

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    rockwellautomation · micrologix 1100 firmware16 дек. 2022 г.

  • CVE-2024-43450
    30Наблюдать

    Windows DNS Spoofing Vulnerability

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    microsoft · windows server 200812 нояб. 2024 г.

  • CVE-2023-49933
    30Наблюдать

    An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x.

    ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %

    schedmd · slurm14 дек. 2023 г.

  • CVE-2024-8933
    30Наблюдать

    CWE-924: Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability exists that could cause retr

    ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %

    schneider electric · modicon m340 cpu (part numbers bmxp34*)13 нояб. 2024 г.

  • CVE-2026-12576
    30Наблюдать

    DVP80ES3 Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability

    ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %

    deltaww · dvp80es31 июл. 2026 г.

  • CVE-2026-13584
    28Наблюдать

    Information tampering and Denial-of-service (DoS) vulnerability in CC-Link IE TSN communication protocol

    ВысокаяCVSS 7,1Эксплойта нетEPSS 0 %

    mitsubishi electric corporation · melsec mx controller mx-r model mxr300-1630 июл. 2026 г.

  • GHSA-vhmj-5q9r-mm9g
    27Наблюдать

    BlastRADIUS also affects eduMFA

    СредняяCVSS 6,8Эксплойта нет

    PyPI · edumfa17 июл. 2024 г.

  • CVE-2018-14526
    26Наблюдать

    An issue was discovered in rsn_supp/wpa.c in wpa_supplicant 2.0 through 2.6.

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    canonical · ubuntu linux8 авг. 2018 г.

  • CVE-2019-20844
    26Наблюдать

    An issue was discovered in Mattermost Server before 5.18.0, 5.17.2, 5.16.4, 5.15.4, and 5.9.7.

    СредняяCVSS 6,5Эксплойта нетEPSS 0 %

    mattermost · mattermost server19 июн. 2020 г.

  • CVE-2026-39827
    26Наблюдать

    Invoking memory leak when rejecting channels can lead to DoS in golang.org/x/crypto/ssh

    СредняяCVSS 6,5Эксплойта нетEPSS 0 %

    golang · crypto22 мая 2026 г.

  • CVE-2026-54891
    25Наблюдать

    Plaintext APPLICATION_DATA injected during TLS handshake delivered to client application post-handshake in ssl

    СредняяCVSS 6,3Эксплойта нетEPSS 0 %

    erlang · erlang\/otp2 июл. 2026 г.

  • CVE-2024-12399
    24Наблюдать

    CWE-924: Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability exists that could cause part

    СредняяCVSS 6,1Эксплойта нетEPSS 0 %

    schneider electric · pro-face gp-pro ex17 янв. 2025 г.

  • CVE-2021-21390
    23Наблюдать

    MITM modification of request bodies in MinIO

    СредняяCVSS 5,9Эксплойта нетEPSS 1 %

    minio · minio19 мар. 2021 г.

  • CVE-2023-22372
    23Наблюдать

    BIG-IP Edge Client for Windows and Mac OS vulnerability

    СредняяCVSS 5,9Эксплойта нетEPSS 0 %

    f5 · big-ip access policy manager3 мая 2023 г.

Все классы уязвимостей