Falhas do tipo CWE-347

474 resultados
CVE-2025-34324HIGHGoSign Desktop < 2.4.1 Insecure Update Mechanism RCEEPSS 0.1%CVE-2023-20135MEDIUMA vulnerability in Cisco IOS XR Software image verification checks could allow an authenticated, local attacker to execute arbitrary code onEPSS 0.1%CVE-2025-27813HIGHMSI Center before 2.0.52.0 has Missing PE Signature Validation.EPSS 0.1%CVE-2026-2625MEDIUMRust-rpm-sequoia: rust-rpm-sequoia: denial of service via crafted rpm file during signature verificationEPSS 0.1%CVE-2026-4541LOWjanmojzis tinyssh Ed25519 Signature crypto_sign_ed25519_tinyssh.c signature verificationEPSS 0.1%CVE-2024-36334HIGHImproper verification of cryptographic signature in the Radeon RGB tool could allow a malicious file placed in the installation directory toEPSS 0.1%CVE-2025-54549MEDIUMCryptographic validation of upgrade images could be circumventing by dropping a specifically crafted file into the upgrade ISOEPSS 0.1%CVE-2025-30064HIGHPossibility to generate a session for any user via the "ex:action" parameter after obtaining access to the JWT keyEPSS 0.1%CVE-2025-64456HIGHIn JetBrains ReSharper before 2025.2.4 missing signature verification in DPA Collector allows local privilege escalationEPSS 0.1%CVE-2025-46774MEDIUMAn Improper Verification of Cryptographic Signature vulnerability [CWE-347] in FortiClient MacOS installer version 7.4.2 and below, version EPSS 0.1%CVE-2025-23364MEDIUMA vulnerability has been identified in TIA Administrator (All versions < V3.0.6). The affected application improperly validates code signingEPSS 0.1%CVE-2024-23581MEDIUMHCL Traveler for Microsoft Outlook (HTMO) is susceptible to an application modification vulnerabilityEPSS 0.1%CVE-2023-20940HIGHIn the Android operating system, there is a possible way to replace a boot partition due to improperly used crypto. This could lead to localEPSS 0.1%CVE-2025-0824LOWlack of validation for firmware update in Hitachi Virtual StorageEPSS