İçeriğe atla
Noroxi

CWE-325 · 51 kayıt

Missing Cryptographic Step

Bu sınıftaki CVE’ler

51 kayıt

  • CVE-2025-3938
    39İzleyin

    Missing Cryptographic Step

    KritikCVSS 9,8İstismar yokEPSS %0

    tridium · niagara22 May 2025

  • CVE-2026-22863
    36İzleyin

    Deno node:crypto doesn't finalize cipher

    KritikCVSS 9,2İstismar yokEPSS %0

    deno · deno15 Oca 2026

  • CVE-2026-17666
    36İzleyin

    Cryptographic Flaw in Enterprise in Google Chrome prior to 151.0.7922.72 allowed an attacker in a privileged network position to bypass disc

    KritikCVSS 9,1İstismar yokEPSS %0

    google · chrome29 Tem 2026

  • CVE-2026-4601
    35İzleyin

    Versions of the package jsrsasign before 11.1.1 are vulnerable to Missing Cryptographic Step via the KJUR.crypto.DSA.signWithMessageHash pro

    YüksekCVSS 8,8İstismar yokEPSS %0

    kjur · jsrsasign23 Mar 2026

  • CVE-2025-30147
    34İzleyin

    ALTBN128_ADD, ALTBN128_MUL, ALTBN128_PAIRING precompile functions do not check if points are on curve

    YüksekCVSS 8,7İstismar yokEPSS %0

    hyperledger · besu-native7 May 2025

  • CVE-2026-76784
    34İzleyin

    Insufficient Cryptographic Protections in Local Device Communication Protocol on Multiple TP-Link Kasa Smart Home Devices

    YüksekCVSS 8,7İstismar yokEPSS %0

    tp-link systems inc. · hs103p3 / hs103p4 v526 Ağu 2026

  • CVE-2023-34471
    32İzleyin

    Missing Cryptographic Step

    YüksekCVSS 8,1İstismar yokEPSS %0

    ami · megarac sp-x5 Tem 2023

  • CVE-2026-41395
    32İzleyin

    OpenClaw < 2026.3.28 - Webhook Replay via Query Parameter Reordering in Plivo V3

    YüksekCVSS 8,2İstismar yokEPSS %0

    openclaw · openclaw28 Nis 2026

  • CVE-2021-22946
    31İzleyin

    A user can tell curl >= 7.20.0 and <= 7.78.0 to require a successful upgrade to TLS when speaking to an IMAP, POP3 or FTP server (`--ssl-req

    YüksekCVSS 7,5İstismar yokEPSS %5

    haxx · curl29 Eyl 2021

  • CVE-2026-45445
    30İzleyin

    AES-OCB IV Ignored on EVP_Cipher() Path

    YüksekCVSS 7,5İstismar yokEPSS %1

    openssl · openssl9 Haz 2026

  • CVE-2025-60704
    30İzleyin

    Windows Kerberos Elevation of Privilege Vulnerability

    YüksekCVSS 7,5İstismar yokEPSS %1

    microsoft · windows 10 160711 Kas 2025

  • CVE-2022-1279
    30İzleyin

    Insecure EBICS messages encryption implementation in ebics-java/ebics-java-client could allow an adjacent attacker to decrypt EBICS payloads

    YüksekCVSS 7,5İstismar yokEPSS %0

    ebics java project · ebics java14 Nis 2022

  • CVE-2023-40012
    30İzleyin

    uthenticode EKU validation bypass

    YüksekCVSS 7,5İstismar yokEPSS %0

    trailofbits · uthenticode9 Ağu 2023

  • CVE-2022-20742
    29İzleyin

    Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software IPsec IKEv2 VPN Information Disclosure Vulnerability

    YüksekCVSS 7,4İstismar yokEPSS %0

    cisco · secure firewall threat defense3 May 2022

  • CVE-2026-49440
    29İzleyin

    Deno: Miller-Rabin Primality Test Allows Zero Rounds

    YüksekCVSS 7,4İstismar yokEPSS %0

    deno · deno23 Haz 2026

  • CVE-2022-29229
    28İzleyin

    Missing Cryptographic Step in cassproject

    YüksekCVSS 7,2İstismar yokEPSS %0

    cassproject · competency and skills system18 May 2022

  • CVE-2026-55144
    28İzleyin

    Windows Cryptography API: Next Generation (CNG) Tampering Vulnerability

    YüksekCVSS 7,1İstismar yokEPSS %0

    microsoft · windows 11 24h214 Tem 2026

  • CVE-2026-59776
    28İzleyin

    Missing Cryptographic Step (CWE-325) vulnerability exists in certain FeliCa IC chips shipped in or before 2017.

    YüksekCVSS 7,0İstismar yokEPSS %0

    sony corporation · felica ic chips21 Tem 2026

  • CVE-2025-47383
    28İzleyin

    Missing Cryptographic Step in Data Modem

    YüksekCVSS 7,2İstismar yokEPSS %0

    qualcomm · 5g fixed wireless access platform firmware2 Mar 2026

  • CVE-2026-9266
    28İzleyin

    A Missing Required Cryptographic Step vulnerability has been identified in Moxa's embedded Linux firmware for industrial computers and contr

    YüksekCVSS 7,0İstismar yokEPSS %0

    moxa · uc-1200a series12 Haz 2026

  • CVE-2019-3738
    27İzleyin

    RSA BSAFE Crypto-J versions prior to 6.2.5 are vulnerable to a Missing Required Cryptographic Step vulnerability.

    OrtaCVSS 6,5İstismar yokEPSS %2

    dell · bsafe cert-j18 Eyl 2019

  • CVE-2020-26244
    27İzleyin

    Cryptographic issues in Python oic

    OrtaCVSS 6,8İstismar yokEPSS %1

    python openid connect project · python openid connect2 Ara 2020

  • CVE-2018-5383
    27İzleyin

    Bluetooth implementations may not sufficiently validate elliptic curve parameters during Diffie-Hellman key exchange

    OrtaCVSS 6,8İstismar yokEPSS %1

    ti · wl18xx bluetooth service pack7 Ağu 2018

  • CVE-2022-20793
    27İzleyin

    Cisco Touch 10 Device Insufficient Identity Verification Vulnerability

    OrtaCVSS 6,8İstismar yokEPSS %0

    cisco · telepresence collaboration endpoint15 Kas 2024

  • CVE-2023-39199
    26İzleyin

    Cryptographic issues with In-Meeting Chat for some Zoom clients may allow a privileged user to conduct an information disclosure via network

    OrtaCVSS 6,5İstismar yokEPSS %1

    zoom · meetings14 Kas 2023

Tüm zafiyet sınıfları