CWE-295— Improper Certificate Validation
The product does not validate, or incorrectly validates, a certificate.— MITRE CWE catalog
1,455 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-295page 20 of 30
- CVE-2023-39441MEDIUMCVSS 5.9EG 5.92023-08-23
Apache Airflow SMTP Provider before 1.3.0, Apache Airflow IMAP Provider before 3.3.0, and Apache Airflow before 2.7.0 are affected by the Validation of OpenSSL Certificate vulnerability. The default SSL context with SSL library did not …
- CVE-2023-40104HIGHCVSS 7.5EG 7.52024-02-15
In ca-certificates, there is a possible way to read encrypted TLS data due to untrusted cryptographic certificates. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not ne…
- CVE-2023-40256CRITICALCVSS 9.8EG 9.82023-08-11
A vulnerability was discovered in Veritas NetBackup Snapshot Manager before 10.2.0.1 that allowed untrusted clients to interact with the RabbitMQ service. This was caused by improper validation of the client certificate due to misconfigura…
- CVE-2023-41180MEDIUMCVSS 5.9EG 5.92023-09-03
Incorrect certificate validation in InvokeHTTP on Apache NiFi MiNiFi C++ versions 0.13 to 0.14 allows an intermediary to present a forged certificate during TLS handshake negotation. The Disable Peer Verification property of InvokeHTTP was…
- CVE-2023-41991CRITICALCVSS 5.5EG 9.0⚠ KEV2023-09-21
A certificate validation issue was addressed. This issue is fixed in macOS Ventura 13.6, iOS 16.7 and iPadOS 16.7. A malicious app may be able to bypass signature validation. Apple is aware of a report that this issue may have been activel…
- CVE-2023-42425CRITICALCVSS 9.8EG 9.82023-10-31
An issue in Turing Video Turing Edge+ EVC5FD v.1.38.6 allows remote attacker to execute arbitrary code and obtain sensitive information via the cloud connection components.
- CVE-2023-42532HIGHCVSS 7.5EG 7.52023-11-07
Improper Certificate Validation in FotaAgent prior to SMR Nov-2023 Release1 allows remote attacker to intercept the network traffic including Firmware information.
- CVE-2023-43017HIGHCVSS 8.2EG 8.22024-02-07
IBM Security Verify Access 10.0.0.0 through 10.0.6.1 could allow a privileged user to install a configuration file that could allow remote access. IBM X-Force ID: 266155.
- CVE-2023-43082HIGHCVSS 5.9EG 8.62023-11-22
Dell Unity prior to 5.3 contains a 'man in the middle' vulnerability in the vmadapter component. If a customer has a certificate signed by a third-party public Certificate Authority, the vCenter CA could be spoofed by an attacker who can …
- CVE-2023-4499HIGHCVSS 7.5EG 7.52023-10-13
A potential security vulnerability has been identified in the HP ThinUpdate utility (also known as HP Recovery Image and Software Download Tool) which may lead to information disclosure. HP is releasing mitigation for the potential vulnera…
- CVE-2023-45613CRITICALCVSS 9.1EG 9.12023-10-09
In JetBrains Ktor before 2.3.5 server certificates were not verified
- CVE-2023-4586HIGHCVSS 7.4EG 7.42023-10-04
A vulnerability was found in the Hot Rod client. This security issue occurs as the Hot Rod client does not enable hostname validation when using TLS, possibly resulting in a man-in-the-middle (MITM) attack.
- CVE-2023-46724HIGHCVSS 7.5EG 7.52023-11-01
Squid is a caching proxy for the Web. Due to an Improper Validation of Specified Index bug, Squid versions 3.3.0.1 through 5.9 and 6.0 prior to 6.4 compiled using `--with-openssl` are vulnerable to a Denial of Service attack against SSL Ce…
- CVE-2023-47537MEDIUMCVSS 4.8EG 4.82024-02-15
An improper certificate validation vulnerability in Fortinet FortiOS 7.4.0 through 7.4.1, FortiOS 7.2.0 through 7.2.6, FortiOS 7.0.0 through 7.0.15, FortiOS 6.4 all versions allows a remote and unauthenticated attacker to perform a Man-in…
- CVE-2023-47700MEDIUMCVSS 5.9EG 5.92024-02-07
IBM SAN Volume Controller, IBM Storwize, IBM FlashSystem and IBM Storage Virtualize 8.6 products could allow a remote attacker to spoof a trusted system that would not be correctly validated by the Storwize server. This could lead to a us…
- CVE-2023-47742MEDIUMCVSS 5.9EG 5.92024-03-03
IBM QRadar Suite Products 1.10.12.0 through 1.10.18.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 could disclose sensitive information using man in the middle techniques due to not correctly enforcing all aspects of certifica…
- CVE-2023-4801HIGHCVSS 7.5EG 7.52023-09-13
An improper certification validation vulnerability in the Insider Threat Management (ITM) Agent for MacOS could be used by an anonymous actor on an adjacent network to establish a man-in-the-middle position between the agent and the ITM se…
- CVE-2023-48052HIGHCVSS 7.4EG 7.42023-11-16
Missing SSL certificate validation in HTTPie v3.2.2 allows attackers to eavesdrop on communications between the host and server via a man-in-the-middle attack.
- CVE-2023-48054HIGHCVSS 7.4EG 7.42023-11-16
Missing SSL certificate validation in localstack v2.3.2 allows attackers to eavesdrop on communications between the host and server via a man-in-the-middle attack.
- CVE-2023-48427CRITICALCVSS 9.8EG 9.82023-12-12
A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 2). Affected products do not properly validate the certificate of the configured UMC server. This could allow an attacker to intercept credentials that are se…
- CVE-2023-48785MEDIUMCVSS 4.8EG 4.82025-03-14
An improper certificate validation vulnerability [CWE-295] in FortiNAC-F version 7.2.4 and below may allow a remote and unauthenticated attacker to perform a Man-in-the-Middle attack on the HTTPS communication channel between the FortiOS d…
- CVE-2023-49247HIGHCVSS 7.5EG 7.52023-12-06
Permission verification vulnerability in distributed scenarios. Successful exploitation of this vulnerability may affect service confidentiality.
- CVE-2023-49250HIGHCVSS 7.3EG 7.32024-02-20
Because the HttpUtils class did not verify certificates, an attacker that could perform a Man-in-the-Middle (MITM) attack on outgoing https connections could impersonate the server. This issue affects Apache DolphinScheduler: before 3.2.0…
- CVE-2023-49312CRITICALCVSS 9.1EG 9.12023-11-26
Precision Bridge PrecisionBridge.exe (aka the thick client) before 7.3.21 allows an integrity violation in which the same license key is used on multiple systems, via vectors involving a Process Hacker memory dump, error message inspection…
- CVE-2023-49567MEDIUMCVSS 6.8EG 6.82024-10-18
A vulnerability has been identified in the Bitdefender Total Security HTTPS scanning functionality where the product incorrectly checks the site's certificate, which allows an attacker to make MITM SSL connections to an arbitrary site. The…
- CVE-2023-49570HIGHCVSS 7.4EG 7.42024-10-18
A vulnerability has been identified in Bitdefender Total Security HTTPS scanning functionality where the software trusts a certificate issued by an entity that isn't authorized to issue certificates. This occurs when the "Basic Constraints…
- CVE-2023-50178HIGHCVSS 7.4EG 7.42024-07-09
An improper certificate validation vulnerability [CWE-295] in FortiADC 7.4.0, 7.2.0 through 7.2.3, 7.1 all versions, 7.0 all versions, 6.2 all versions, 6.1 all versions and 6.0 all versions may allow a remote and unauthenticated attacker …
- CVE-2023-50179MEDIUMCVSS 4.8EG 4.82024-07-09
An improper certificate validation vulnerability [CWE-295] in FortiADC 7.4.0, 7.2 all versions, 7.1 all versions, 7.0 all versions may allow a remote and unauthenticated attacker to perform a Man-in-the-Middle attack on the communication c…
- CVE-2023-50314MEDIUMCVSS 5.3EG 5.32024-08-14
IBM WebSphere Application Server Liberty 17.0.0.3 through 24.0.0.8 could allow an attacker with access to the network to conduct spoofing attacks. An attacker could exploit this vulnerability using a certificate issued by a trusted author…
- CVE-2023-50315MEDIUMCVSS 5.3EG 5.32024-08-14
IBM WebSphere Application Server 8.5 and 9.0 could allow an attacker with access to the network to conduct spoofing attacks. An attacker could exploit this vulnerability using a certificate issued by a trusted authority to obtain sensitiv…
- CVE-2023-50356CRITICALCVSS 6.5EG 9.12024-01-31
SSL connections to some LDAP servers are vulnerable to a man-in-the-middle attack due to improper certificate validation in AREAL Topkapi Vision (Server). This allows a remote unauthenticated attacker to gather sensitive information and pr…
- CVE-2023-50454MEDIUMCVSS 5.9EG 5.92023-12-10
An issue was discovered in Zammad before 6.2.0. In several subsystems, SSL/TLS was used to establish connections to external services without proper validation of hostname and certificate authority. This is exploitable by man-in-the-middle…
- CVE-2023-50949MEDIUMCVSS 5.9EG 5.92024-04-11
IBM QRadar SIEM 7.5 could allow an unauthorized user to perform unauthorized actions due to improper certificate validation. IBM X-Force ID: 275706.
- CVE-2023-51634HIGHCVSS 7.5EG 7.52024-11-22
NETGEAR RAX30 Improper Certificate Validation Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to compromise the integrity of downloaded information on affected installations of NETGEAR RAX30 route…
- CVE-2023-51662HIGHCVSS 7.5EG 7.52023-12-22
The Snowflake .NET driver provides an interface to the Microsoft .NET open source software framework for developing applications. Snowflake recently received a report about a vulnerability in the Snowflake Connector .NET where the checks a…
- CVE-2023-51837CRITICALCVSS 9.8EG 9.82024-01-30
Ylianst MeshCentral 1.1.16 is vulnerable to Missing SSL Certificate Validation.
- CVE-2023-5422CRITICALCVSS 9.1EG 9.12023-10-16
The functions to fetch e-mail via POP3 or IMAP as well as sending e-mail via SMTP use OpenSSL for static SSL or TLS based communication. As the SSL_get_verify_result() function is not used the certificated is trusted always and it can not…
- CVE-2023-5554CRITICALCVSS 9.8EG 9.82023-10-12
Lack of TLS certificate verification in log transmission of a financial module within LINE client for iOS prior to 13.16.0.
- CVE-2023-5594HIGHCVSS 8.6EG 8.62023-12-21
Improper validation of the server’s certificate chain in secure traffic scanning feature considered intermediate certificate signed using the MD5 or SHA1 algorithm as trusted.
- CVE-2023-5909HIGHCVSS 7.5EG 7.52023-11-30
KEPServerEX does not properly validate certificates from clients which may allow unauthenticated users to connect.
- CVE-2023-6043HIGHCVSS 7.8EG 7.82024-01-19
A privilege escalation vulnerability was reported in Lenovo Vantage that could allow a local attacker to bypass integrity checks and execute arbitrary code with elevated privileges.
- CVE-2023-6055HIGHCVSS 7.4EG 7.42024-10-18
A vulnerability has been identified in Bitdefender Total Security HTTPS scanning functionality where the software fails to properly validate website certificates. Specifically, if a site certificate lacks the "Server Authentication" specif…
- CVE-2023-6056HIGHCVSS 7.4EG 7.42024-10-18
A vulnerability has been discovered in Bitdefender Total Security HTTPS scanning functionality that results in the improper trust of self-signed certificates. The product is found to trust certificates signed with the RIPEMD-160 hashing al…
- CVE-2023-6057HIGHCVSS 7.4EG 7.42024-10-18
A vulnerability has been discovered in Bitdefender Total Security HTTPS scanning functionality that results in the improper trust of certificates issued using the DSA signature algorithm. The product does not properly check the certificate…
- CVE-2023-6058MEDIUMCVSS 6.8EG 6.82024-10-18
A vulnerability has been identified in Bitdefender Safepay's handling of HTTPS connections. The issue arises when the product blocks a connection due to an untrusted server certificate but allows the user to add the site to exceptions, res…
- CVE-2023-6680HIGHCVSS 8.1EG 8.12023-12-15
An improper certificate validation issue in Smartcard authentication in GitLab EE affecting all versions from 11.6 prior to 16.4.4, 16.5 prior to 16.5.4, and 16.6 prior to 16.6.2 allows an attacker to authenticate as another user given the…
- CVE-2024-0042HIGHCVSS 7.8EG 7.82024-05-07
In TBD of TBD, there is a possible confusion of OEM and DRM certificates due to improperly used crypto. This could lead to local bypass of DRM content protection with no additional execution privileges needed. User interaction is not neede…
- CVE-2024-0853MEDIUMCVSS 5.3EG 5.32024-02-03
curl inadvertently kept the SSL session ID for connections in its cache even when the verify status (*OCSP stapling*) test failed. A subsequent transfer to the same hostname could then succeed if the session ID cache was still fresh, which…
- CVE-2024-10444HIGHCVSS 7.5EG 7.52025-03-19
Improper certificate validation vulnerability in the LDAP utilities in Synology DiskStation Manager (DSM) before 7.1.1-42962-8, 7.2.1-69057-7 and 7.2.2-72806-3 allows man-in-the-middle attackers to hijack the authentication of administrato…
- CVE-2024-10445MEDIUMCVSS 4.3EG 4.32025-03-19
Improper certificate validation vulnerability in the update functionality in Synology BeeStation OS (BSM) before 1.1-65374 and Synology DiskStation Manager (DSM) before 6.2.4-25556-8, 7.1.1-42962-7, 7.2-64570-4, 7.2.1-69057-6 and 7.2.2-728…
Map vulnerabilities like CWE-295 to your infrastructure
EchelonGraph correlates every CVE — across CWE-295 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →