Show filters
298 Total Results
Displaying 51-60 of 298
Sort by:
Attacker Value
Unknown

CVE-2021-23162

Disclosure Date: November 15, 2021 (last updated February 23, 2025)
Improper validation of the cloud certificate chain in Mobile Connect allows man-in-the-middle attack to impersonate the legitimate Command Centre Server. This issue affects: Gallagher Command Centre Mobile Connect for Android 15 versions prior to 15.04.040; version 14 and prior versions.
Attacker Value
Unknown

CVE-2021-23167

Disclosure Date: November 15, 2021 (last updated February 23, 2025)
Improper certificate validation vulnerability in SMTP Client allows man-in-the-middle attack to retrieve sensitive information from the Command Centre Server. This issue affects: Gallagher Command Centre 8.50 versions prior to 8.50.2048 (MR3); 8.40 versions prior to 8.40.2063 (MR4); 8.30 versions prior to 8.30.1454 (MR4) ; version 8.20 and prior versions.
Attacker Value
Unknown

CVE-2021-26320

Disclosure Date: November 09, 2021 (last updated February 23, 2025)
Insufficient validation of the AMD SEV Signing Key (ASK) in the SEND_START command in the SEV Firmware may allow a local authenticated attacker to perform a denial of service of the PSP
Attacker Value
Unknown

CVE-2021-41019

Disclosure Date: November 02, 2021 (last updated February 23, 2025)
An improper validation of certificate with host mismatch [CWE-297] vulnerability in FortiOS versions 6.4.6 and below may allow the connection to a malicious LDAP server via options in GUI, leading to disclosure of sensitive information, such as AD credentials.
Attacker Value
Unknown

CVE-2021-29737

Disclosure Date: October 29, 2021 (last updated February 23, 2025)
IBM InfoSphere Data Flow Designer Engine (IBM InfoSphere Information Server 11.7 ) component has improper validation of the REST API server certificate. IBM X-Force ID: 201301.
Attacker Value
Unknown

CVE-2021-36756

Disclosure Date: October 27, 2021 (last updated February 23, 2025)
CFEngine Enterprise 3.15.0 through 3.15.4 has Missing SSL Certificate Validation.
Attacker Value
Unknown

CVE-2021-22278

Disclosure Date: October 19, 2021 (last updated February 23, 2025)
A certificate validation vulnerability in PCM600 Update Manager allows attacker to get unwanted software packages to be installed on computer which has PCM600 installed.
Attacker Value
Unknown

CVE-2021-41611

Disclosure Date: October 18, 2021 (last updated February 23, 2025)
An issue was discovered in Squid 5.0.6 through 5.1.x before 5.2. When validating an origin server or peer certificate, Squid may incorrectly classify certain certificates as trusted. This problem allows a remote server to obtain security trust well improperly. This indication of trust may be passed along to clients, allowing access to unsafe or hijacked services.
Attacker Value
Unknown

CVE-2021-20833

Disclosure Date: October 13, 2021 (last updated February 23, 2025)
The SNKRDUNK Market Place App for iOS versions prior to 2.2.0 does not verify server certificate properly, which allows man-in-the-middle attackers to eavesdrop on and/or alter encrypted communication via a crafted certificate.
Attacker Value
Unknown

CVE-2021-25634

Disclosure Date: October 11, 2021 (last updated February 23, 2025)
LibreOffice supports digital signatures of ODF documents and macros within documents, presenting visual aids that no alteration of the document occurred since the last signing and that the signature is valid. An Improper Certificate Validation vulnerability in LibreOffice allowed an attacker to modify a digitally signed ODF document to insert an additional signing time timestamp which LibreOffice would incorrectly present as a valid signature signed at the bogus signing time. This issue affects: The Document Foundation LibreOffice 7-0 versions prior to 7.0.6; 7-1 versions prior to 7.1.2.