Fallos del tipo CWE-347

471 resultados
CVE-2016-20021CRITICALIn Gentoo Portage before 3.0.47, there is missing PGP validation of executed code: the standalone emerge-webrsync downloads a .gpgsig file bEPSS 0.5%CVE-2026-23687HIGHXML Signature Wrapping in SAP NetWeaver AS ABAP and ABAP PlatformEPSS 0.5%CVE-2025-33074HIGHAzure Functions Remote Code Execution VulnerabilityEPSS 0.5%CVE-2023-23928MEDIUMreason-jose ignores signature checksEPSS 0.5%CVE-2022-41340HIGHThe secp256k1-js package before 1.1.0 for Node.js implements ECDSA without required r and s validation, leading to signature forgery.EPSS 0.5%CVE-2023-28228MEDIUMWindows Spoofing VulnerabilityEPSS 0.5%CVE-2025-55229MEDIUMWindows Certificate Spoofing VulnerabilityEPSS 0.4%CVE-2024-8531HIGHCWE-347: Improper Verification of Cryptographic Signature vulnerability exists that could compromise the Data Center Expert software when anEPSS 0.4%CVE-2026-1529HIGHOrg.keycloak.services.resources.organizations: keycloak: unauthorized organization registration via improper invitation token validationEPSS 0.4%CVE-2020-25166HIGHB. Braun SpaceCom, Battery Pack SP with Wi-Fi, and Data module compactplusEPSS 0.4%CVE-2026-0265HIGHPAN-OS: Authentication Bypass with Cloud Authentication Service (CAS) enabledEPSS 0.4%CVE-2020-22653CRITICALIn Ruckus R310 10.5.1.0.199, Ruckus R500 10.5.1.0.199, Ruckus R600 10.5.1.0.199, Ruckus T300 10.5.1.0.199, Ruckus T301n 10.5.1.0.199, RuckusEPSS 0.4%CVE-2023-23772HIGHMotorola MBTS Site Controller fails to check firmware update authenticity. The Motorola MBTS Site Controller lacks cryptographic signature vEPSS 0.4%CVE-2023-23773HIGHMotorola EBTS/MBTS Base Radio fails to check firmware authenticity. The Motorola MBTS Base Radio lacks cryptographic signature validation foEPSS 0.4%CVE-2023-42806MEDIUMSnapshot signature not including HeadID will allow replay attacksEPSS 0.4%CVE-2024-7479HIGHImproper signature verification of VPN driver installation in TeamViewer Remote ClientsEPSS 0.4%CVE-2025-12295HIGHD-Link DAP-2695 Firmware Update sub_40C6B8 signature verificationEPSS 0.4%CVE-2026-27962CRITICALAuthlib JWS JWK Header Injection: Signature Verification BypassEPSS 0.4%CVE-2025-32977CRITICALQuest KACE Systems Management Appliance (SMA) 13.0.x before 13.0.385, 13.1.x before 13.1.81, 13.2.x before 13.2.183, 14.0.x before 14.0.341 EPSS 0.4%CVE-2024-21383LOWMicrosoft Edge (Chromium-based) Spoofing VulnerabilityEPSS 0.4%