İçeriğe atla
Noroxi

CWE-924 · 35 kayıt

Improper Enforcement of Message Integrity During Transmission in a Communication Channel

Bu sınıftaki CVE’ler

35 kayıt

  • CVE-2025-29628
    37İzleyin

    A Gardyn Azure IoT Hub connection string is downloaded over an insecure HTTP connection in Gardyn Home Kit firmware before master.619, Home

    KritikCVSS 9,4Kavram kanıtıEPSS %0

    gardyn · home kit firmware25 Tem 2025

  • CVE-2020-5869
    36İzleyin

    In BIG-IQ 5.2.0-7.0.0, high availability (HA) synchronization is not secure by TLS and may allow on-path attackers to read / modify confiden

    KritikCVSS 9,1İstismar yokEPSS %0

    f5 · big-iq centralized management24 Nis 2020

  • CVE-2024-44730
    36İzleyin

    Incorrect access control in the function handleDataChannelChat(dataMessage) of Mirotalk before commit c21d58 allows attackers to forge chat

    KritikCVSS 9,1İstismar yokEPSS %0

    11 Eki 2024

  • CVE-2025-0592
    35İzleyin

    SICK Lector8xx and InspectorP8xx vulnerable for code execution

    YüksekCVSS 8,8İstismar yokEPSS %0

    sick ag · sick lector8xx14 Şub 2025

  • CVE-2019-25719
    35İzleyin

    Dräger Infinity M540 VG4.1.1 Spoofing and DoS via Network Message Handling

    YüksekCVSS 8,8İstismar yokEPSS %0

    dräger · infinity acute care system2 Haz 2026

  • CVE-2021-34793
    34İzleyin

    Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Transparent Mode Denial of Service Vulnerability

    YüksekCVSS 8,6İstismar yokEPSS %1

    cisco · adaptive security appliance27 Eki 2021

  • CVE-2018-7295
    32İzleyin

    ffxivlauncher.exe in Square Enix Final Fantasy XIV 4.21 and 4.25 on Windows is affected by Improper Enforcement of Message Integrity During

    YüksekCVSS 8,1İstismar yokEPSS %0

    square-enix · final fantasy xiv23 May 2018

  • CVE-2021-41034
    32İzleyin

    The build of some language stacks of Eclipse Che version 6 includes pulling some binaries from an unsecured HTTP endpoint.

    YüksekCVSS 8,1İstismar yokEPSS %0

    eclipse · che29 Eyl 2021

  • CVE-2023-6408
    32İzleyin

    CWE-924: Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability exists that could cause a d

    YüksekCVSS 8,1İstismar yokEPSS %0

    schneider-electric · modicon m340 bmxp341000 firmware14 Şub 2024

  • CVE-2023-2885
    32İzleyin

    Channel Accessible by Non-Endpoint in CBOT's Chatbot

    YüksekCVSS 8,1İstismar yokEPSS %0

    cbot · cbot core25 May 2023

  • CVE-2020-11639
    31İzleyin

    Insufficient access control on Inter process communication,

    YüksekCVSS 7,8İstismar yokEPSS %0

    abb · advabuild23 Tem 2024

  • CVE-2022-3166
    30İzleyin

    MicroLogix 1100 & 1400 Product Web Server Application Vulnerable to Denial-Of-Service Condition Attack

    YüksekCVSS 7,5İstismar yokEPSS %1

    rockwellautomation · micrologix 1100 firmware16 Ara 2022

  • CVE-2024-43450
    30İzleyin

    Windows DNS Spoofing Vulnerability

    YüksekCVSS 7,5İstismar yokEPSS %1

    microsoft · windows server 200812 Kas 2024

  • CVE-2023-49933
    30İzleyin

    An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x.

    YüksekCVSS 7,5İstismar yokEPSS %0

    schedmd · slurm14 Ara 2023

  • CVE-2024-8933
    30İzleyin

    CWE-924: Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability exists that could cause retr

    YüksekCVSS 7,5İstismar yokEPSS %0

    schneider electric · modicon m340 cpu (part numbers bmxp34*)13 Kas 2024

  • CVE-2026-12576
    30İzleyin

    DVP80ES3 Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability

    YüksekCVSS 7,5İstismar yokEPSS %0

    deltaww · dvp80es31 Tem 2026

  • CVE-2026-13584
    28İzleyin

    Information tampering and Denial-of-service (DoS) vulnerability in CC-Link IE TSN communication protocol

    YüksekCVSS 7,1İstismar yokEPSS %0

    mitsubishi electric corporation · melsec mx controller mx-r model mxr300-1630 Tem 2026

  • BlastRADIUS also affects eduMFA

    OrtaCVSS 6,8İstismar yok

    PyPI · edumfa17 Tem 2024

  • CVE-2018-14526
    26İzleyin

    An issue was discovered in rsn_supp/wpa.c in wpa_supplicant 2.0 through 2.6.

    OrtaCVSS 6,5İstismar yokEPSS %1

    canonical · ubuntu linux8 Ağu 2018

  • CVE-2019-20844
    26İzleyin

    An issue was discovered in Mattermost Server before 5.18.0, 5.17.2, 5.16.4, 5.15.4, and 5.9.7.

    OrtaCVSS 6,5İstismar yokEPSS %0

    mattermost · mattermost server19 Haz 2020

  • CVE-2026-39827
    26İzleyin

    Invoking memory leak when rejecting channels can lead to DoS in golang.org/x/crypto/ssh

    OrtaCVSS 6,5İstismar yokEPSS %0

    golang · crypto22 May 2026

  • CVE-2026-54891
    25İzleyin

    Plaintext APPLICATION_DATA injected during TLS handshake delivered to client application post-handshake in ssl

    OrtaCVSS 6,3İstismar yokEPSS %0

    erlang · erlang\/otp2 Tem 2026

  • CVE-2024-12399
    24İzleyin

    CWE-924: Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability exists that could cause part

    OrtaCVSS 6,1İstismar yokEPSS %0

    schneider electric · pro-face gp-pro ex17 Oca 2025

  • CVE-2021-21390
    23İzleyin

    MITM modification of request bodies in MinIO

    OrtaCVSS 5,9İstismar yokEPSS %1

    minio · minio19 Mar 2021

  • CVE-2023-22372
    23İzleyin

    BIG-IP Edge Client for Windows and Mac OS vulnerability

    OrtaCVSS 5,9İstismar yokEPSS %0

    f5 · big-ip access policy manager3 May 2023

Tüm zafiyet sınıfları