CWE-924 · 35 kayıt
Improper Enforcement of Message Integrity During Transmission in a Communication Channel
Bu sınıftaki CVE’ler
35 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
37İzleyin | CVE-2025-29628Kavram kanıtı | A Gardyn Azure IoT Hub connection string is downloaded over an insecure HTTP connection in Gardyn Home Kit firmware before master.619, Home gardyn · home kit firmware · CWE-924 | Kritik9,4 | — | %0,3 | 25 Tem 2025 |
36İzleyin | CVE-2020-5869İstismar yok | In BIG-IQ 5.2.0-7.0.0, high availability (HA) synchronization is not secure by TLS and may allow on-path attackers to read / modify confidenf5 · big-iq centralized management · CWE-924 | Kritik9,1 | — | %0,5 | 24 Nis 2020 |
36İzleyin | CVE-2024-44730İstismar yok | Incorrect access control in the function handleDataChannelChat(dataMessage) of Mirotalk before commit c21d58 allows attackers to forge chat CWE-924 | Kritik9,1 | — | %0,4 | 11 Eki 2024 |
35İzleyin | CVE-2025-0592İstismar yok | SICK Lector8xx and InspectorP8xx vulnerable for code executionsick ag · sick lector8xx · CWE-924 | Yüksek8,8 | — | %0,4 | 14 Şub 2025 |
35İzleyin | CVE-2019-25719İstismar yok | Dräger Infinity M540 VG4.1.1 Spoofing and DoS via Network Message Handlingdräger · infinity acute care system · CWE-924 | Yüksek8,8 | — | %0,1 | 2 Haz 2026 |
34İzleyin | CVE-2021-34793İstismar yok | Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Transparent Mode Denial of Service Vulnerabilitycisco · adaptive security appliance · CWE-924 | Yüksek8,6 | — | %0,6 | 27 Eki 2021 |
32İzleyin | CVE-2018-7295İstismar yok | ffxivlauncher.exe in Square Enix Final Fantasy XIV 4.21 and 4.25 on Windows is affected by Improper Enforcement of Message Integrity During square-enix · final fantasy xiv · CWE-924 | Yüksek8,1 | — | %0,4 | 23 May 2018 |
32İzleyin | CVE-2021-41034İstismar yok | The build of some language stacks of Eclipse Che version 6 includes pulling some binaries from an unsecured HTTP endpoint.eclipse · che · CWE-924 | Yüksek8,1 | — | %0,4 | 29 Eyl 2021 |
32İzleyin | CVE-2023-6408İstismar yok | CWE-924: Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability exists that could cause a dschneider-electric · modicon m340 bmxp341000 firmware · CWE-924 | Yüksek8,1 | — | %0,3 | 14 Şub 2024 |
32İzleyin | CVE-2023-2885İstismar yok | Channel Accessible by Non-Endpoint in CBOT's Chatbotcbot · cbot core · CWE-924 | Yüksek8,1 | — | %0,3 | 25 May 2023 |
31İzleyin | CVE-2020-11639İstismar yok | Insufficient access control on Inter process communication,abb · advabuild · CWE-924 | Yüksek7,8 | — | %0,1 | 23 Tem 2024 |
30İzleyin | CVE-2022-3166İstismar yok | MicroLogix 1100 & 1400 Product Web Server Application Vulnerable to Denial-Of-Service Condition Attackrockwellautomation · micrologix 1100 firmware · CWE-924 | Yüksek7,5 | — | %0,7 | 16 Ara 2022 |
30İzleyin | CVE-2024-43450İstismar yok | Windows DNS Spoofing Vulnerabilitymicrosoft · windows server 2008 · CWE-924 | Yüksek7,5 | — | %0,6 | 12 Kas 2024 |
30İzleyin | CVE-2023-49933İstismar yok | An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x.schedmd · slurm · CWE-924 | Yüksek7,5 | — | %0,4 | 14 Ara 2023 |
30İzleyin | CVE-2024-8933İstismar yok | CWE-924: Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability exists that could cause retrschneider electric · modicon m340 cpu (part numbers bmxp34*) · CWE-924 | Yüksek7,5 | — | %0,3 | 13 Kas 2024 |
30İzleyin | CVE-2026-12576İstismar yok | DVP80ES3 Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerabilitydeltaww · dvp80es3 · CWE-924 | Yüksek7,5 | — | %0,2 | 1 Tem 2026 |
28İzleyin | CVE-2026-13584İstismar yok | Information tampering and Denial-of-service (DoS) vulnerability in CC-Link IE TSN communication protocolmitsubishi electric corporation · melsec mx controller mx-r model mxr300-16 · CWE-924 | Yüksek7,1 | — | %0,2 | 30 Tem 2026 |
27İzleyin | GHSA-vhmj-5q9r-mm9gİstismar yok | BlastRADIUS also affects eduMFAPyPI · edumfa · CWE-924 | Orta6,8 | — | — | 17 Tem 2024 |
26İzleyin | CVE-2018-14526İstismar yok | An issue was discovered in rsn_supp/wpa.c in wpa_supplicant 2.0 through 2.6.canonical · ubuntu linux · CWE-924 | Orta6,5 | — | %1,5 | 8 Ağu 2018 |
26İzleyin | CVE-2019-20844İstismar yok | An issue was discovered in Mattermost Server before 5.18.0, 5.17.2, 5.16.4, 5.15.4, and 5.9.7.mattermost · mattermost server · CWE-924 | Orta6,5 | — | %0,4 | 19 Haz 2020 |
26İzleyin | CVE-2026-39827İstismar yok | Invoking memory leak when rejecting channels can lead to DoS in golang.org/x/crypto/sshgolang · crypto · CWE-924 | Orta6,5 | — | %0,3 | 22 May 2026 |
25İzleyin | CVE-2026-54891İstismar yok | Plaintext APPLICATION_DATA injected during TLS handshake delivered to client application post-handshake in sslerlang · erlang\/otp · CWE-924 | Orta6,3 | — | %0,2 | 2 Tem 2026 |
24İzleyin | CVE-2024-12399İstismar yok | CWE-924: Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability exists that could cause partschneider electric · pro-face gp-pro ex · CWE-924 | Orta6,1 | — | %0,2 | 17 Oca 2025 |
23İzleyin | CVE-2021-21390İstismar yok | MITM modification of request bodies in MinIOminio · minio · CWE-924 | Orta5,9 | — | %0,9 | 19 Mar 2021 |
23İzleyin | CVE-2023-22372İstismar yok | BIG-IP Edge Client for Windows and Mac OS vulnerabilityf5 · big-ip access policy manager · CWE-924 | Orta5,9 | — | %0,2 | 3 May 2023 |
- CVE-2025-2962837İzleyin
A Gardyn Azure IoT Hub connection string is downloaded over an insecure HTTP connection in Gardyn Home Kit firmware before master.619, Home
KritikCVSS 9,4Kavram kanıtıEPSS %0gardyn · home kit firmware25 Tem 2025
- CVE-2020-586936İzleyin
In BIG-IQ 5.2.0-7.0.0, high availability (HA) synchronization is not secure by TLS and may allow on-path attackers to read / modify confiden
KritikCVSS 9,1İstismar yokEPSS %0f5 · big-iq centralized management24 Nis 2020
- CVE-2024-4473036İzleyin
Incorrect access control in the function handleDataChannelChat(dataMessage) of Mirotalk before commit c21d58 allows attackers to forge chat
KritikCVSS 9,1İstismar yokEPSS %011 Eki 2024
- CVE-2025-059235İzleyin
SICK Lector8xx and InspectorP8xx vulnerable for code execution
YüksekCVSS 8,8İstismar yokEPSS %0sick ag · sick lector8xx14 Şub 2025
- CVE-2019-2571935İzleyin
Dräger Infinity M540 VG4.1.1 Spoofing and DoS via Network Message Handling
YüksekCVSS 8,8İstismar yokEPSS %0dräger · infinity acute care system2 Haz 2026
- CVE-2021-3479334İzleyin
Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Transparent Mode Denial of Service Vulnerability
YüksekCVSS 8,6İstismar yokEPSS %1cisco · adaptive security appliance27 Eki 2021
- CVE-2018-729532İzleyin
ffxivlauncher.exe in Square Enix Final Fantasy XIV 4.21 and 4.25 on Windows is affected by Improper Enforcement of Message Integrity During
YüksekCVSS 8,1İstismar yokEPSS %0square-enix · final fantasy xiv23 May 2018
- CVE-2021-4103432İzleyin
The build of some language stacks of Eclipse Che version 6 includes pulling some binaries from an unsecured HTTP endpoint.
YüksekCVSS 8,1İstismar yokEPSS %0eclipse · che29 Eyl 2021
- CVE-2023-640832İzleyin
CWE-924: Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability exists that could cause a d
YüksekCVSS 8,1İstismar yokEPSS %0schneider-electric · modicon m340 bmxp341000 firmware14 Şub 2024
- CVE-2023-288532İzleyin
Channel Accessible by Non-Endpoint in CBOT's Chatbot
YüksekCVSS 8,1İstismar yokEPSS %0cbot · cbot core25 May 2023
- CVE-2020-1163931İzleyin
Insufficient access control on Inter process communication,
YüksekCVSS 7,8İstismar yokEPSS %0abb · advabuild23 Tem 2024
- CVE-2022-316630İzleyin
MicroLogix 1100 & 1400 Product Web Server Application Vulnerable to Denial-Of-Service Condition Attack
YüksekCVSS 7,5İstismar yokEPSS %1rockwellautomation · micrologix 1100 firmware16 Ara 2022
- CVE-2024-4345030İzleyin
Windows DNS Spoofing Vulnerability
YüksekCVSS 7,5İstismar yokEPSS %1microsoft · windows server 200812 Kas 2024
- CVE-2023-4993330İzleyin
An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x.
YüksekCVSS 7,5İstismar yokEPSS %0schedmd · slurm14 Ara 2023
- CVE-2024-893330İzleyin
CWE-924: Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability exists that could cause retr
YüksekCVSS 7,5İstismar yokEPSS %0schneider electric · modicon m340 cpu (part numbers bmxp34*)13 Kas 2024
- CVE-2026-1257630İzleyin
DVP80ES3 Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability
YüksekCVSS 7,5İstismar yokEPSS %0deltaww · dvp80es31 Tem 2026
- CVE-2026-1358428İzleyin
Information tampering and Denial-of-service (DoS) vulnerability in CC-Link IE TSN communication protocol
YüksekCVSS 7,1İstismar yokEPSS %0mitsubishi electric corporation · melsec mx controller mx-r model mxr300-1630 Tem 2026
- GHSA-vhmj-5q9r-mm9g27İzleyin
BlastRADIUS also affects eduMFA
OrtaCVSS 6,8İstismar yokPyPI · edumfa17 Tem 2024
- CVE-2018-1452626İzleyin
An issue was discovered in rsn_supp/wpa.c in wpa_supplicant 2.0 through 2.6.
OrtaCVSS 6,5İstismar yokEPSS %1canonical · ubuntu linux8 Ağu 2018
- CVE-2019-2084426İzleyin
An issue was discovered in Mattermost Server before 5.18.0, 5.17.2, 5.16.4, 5.15.4, and 5.9.7.
OrtaCVSS 6,5İstismar yokEPSS %0mattermost · mattermost server19 Haz 2020
- CVE-2026-3982726İzleyin
Invoking memory leak when rejecting channels can lead to DoS in golang.org/x/crypto/ssh
OrtaCVSS 6,5İstismar yokEPSS %0golang · crypto22 May 2026
- CVE-2026-5489125İzleyin
Plaintext APPLICATION_DATA injected during TLS handshake delivered to client application post-handshake in ssl
OrtaCVSS 6,3İstismar yokEPSS %0erlang · erlang\/otp2 Tem 2026
- CVE-2024-1239924İzleyin
CWE-924: Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability exists that could cause part
OrtaCVSS 6,1İstismar yokEPSS %0schneider electric · pro-face gp-pro ex17 Oca 2025
- CVE-2021-2139023İzleyin
MITM modification of request bodies in MinIO
OrtaCVSS 5,9İstismar yokEPSS %1minio · minio19 Mar 2021
- CVE-2023-2237223İzleyin
BIG-IP Edge Client for Windows and Mac OS vulnerability
OrtaCVSS 5,9İstismar yokEPSS %0f5 · big-ip access policy manager3 May 2023