CWE-599

Total CVEs
3
Vulnerabilities
Avg CVSS v3
7.1
High
Latest CVE
2024
Most Recent

Severity Distribution

Critical 0
0%
High 2
66.7%
Medium 1
33.3%
Low 0
0%

External References

All CVEs (3)

Page 1 of 1
CVSS:7.5(High)

A TLS certificate verification issue discovered in cortex v0.42.1 allows attackers to obtain sensitive information via the makeOperatorRequest function.

CVSS:7.1(High)

goframe v2.7.2 is configured to skip TLS certificate verification, possibly allowing attackers to execute a man-in-the-middle attack via the gclient component.

CVSS:6.8(Medium)

D-Link DIR-1950 up to v1.11B03 does not validate SSL certificates when requesting the latest firmware version and downloading URL. This can allow attackers to downgrade the firmware version or change ...