Weaknesses of type CWE-295

685 results
CVE-2024-29171MEDIUMDell BSAFE SSL-J, versions prior to 6.6 and versions 7.0 through 7.2, contains an Improper certificate verification vulnerability. A remote EPSS 0.3%CVE-2026-24281MEDIUMApache ZooKeeper: Reverse-DNS fallback enables hostname verification bypass in ZooKeeper ZKTrustManagerEPSS 0.3%CVE-2021-27257MEDIUMThis vulnerability allows network-adjacent attackers to compromise the integrity of downloaded information on affected installations of NETGEPSS 0.3%CVE-2023-31190HIGHMissing TLS (HTTPS) certificate validation during firmware update in DroneScout ds230 Remote ID receiver from BlueMark InnovationsEPSS 0.3%CVE-2024-47619HIGHtranport: TLS host name wildcard matching too laxEPSS 0.3%CVE-2023-45613MEDIUMIn JetBrains Ktor before 2.3.5 server certificates were not verifiedEPSS 0.3%CVE-2026-30836CRITICALStep CA: Unauthenticated Certificate Issuance via SCEP UpdateReq (MessageType=18)EPSS 0.3%CVE-2024-54848HIGHImproper handling and storage of certificates in CP Plus CP-VNR-3104 B3223P22C02424 allow attackers to decrypt communications or execute a mEPSS 0.3%CVE-2023-43082HIGH Dell Unity prior to 5.3 contains a 'man in the middle' vulnerability in the vmadapter component. If a customer has a certificate signed by EPSS 0.3%CVE-2024-5445LOWEcosystem Agent Insufficient Transport Layer SecurityEPSS 0.3%CVE-2022-3913MEDIUMRapid7 Nexpose Certificate Validation IssueEPSS 0.3%CVE-2024-1052HIGHBoundary Vulnerable to Session Hijacking Through TLS Certificate TamperingEPSS 0.3%CVE-2026-20042MEDIUMCisco Nexus Dashboard Configuration REST API Unauthorized Access VulnerabilityEPSS 0.3%CVE-2023-50356MEDIUMImproper Certificate Validation in AREAL Topkapi Vision (Server)EPSS 0.3%CVE-2021-21548HIGH Dell EMC Unisphere for PowerMax versions before 9.1.0.27, Dell EMC Unisphere for PowerMax Virtual Appliance versions before 9.1.0.27, and PEPSS 0.3%CVE-2025-4575MEDIUMThe x509 application adds trusted use instead of rejected useEPSS 0.3%CVE-2026-32253CRITICALSunshine: Authentication bypass via improper client certificate validationEPSS 0.3%CVE-2019-3875MEDIUMA vulnerability was found in keycloak before 6.0.2. The X.509 authenticator supports the verification of client certificates through the CRLEPSS 0.3%CVE-2025-32057MEDIUMMisconfigured SSL/TLS communication of Redbend service for Infotainment ECUEPSS 0.3%CVE-2024-28872HIGHIncorrect TLS certificate validation can lead to escalated privilegesEPSS 0.3%