CWE-295— Improper Certificate Validation
The product does not validate, or incorrectly validates, a certificate.— MITRE CWE catalog
1,455 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-295page 21 of 30
- CVE-2024-1052HIGHCVSS 8.0EG 8.02024-02-05
Boundary and Boundary Enterprise (“Boundary”) is vulnerable to session hijacking through TLS certificate tampering. An attacker with privileges to enumerate active or pending sessions, obtain a private key pertaining to a session, and …
- CVE-2024-11621HIGHCVSS 8.8EG 8.82025-02-10
Missing certificate validation in Devolutions Remote Desktop Manager on macOS, iOS, Android, Linux allows an attacker to intercept and modify encrypted communications via a man-in-the-middle attack. Versions affected are : Remote Desktop …
- CVE-2024-12174LOWCVSS 2.7EG 2.72024-12-09
An Improper Certificate Validation vulnerability exists in Tenable Security Center where an authenticated, privileged attacker could intercept email messages sent from Security Center via a rogue SMTP server.
- CVE-2024-1351HIGHCVSS 8.8EG 8.82024-03-07
Under certain configurations of --tlsCAFile and tls.CAFile, MongoDB Server may skip peer certificate validation which may result in untrusted connections to succeed. This may effectively reduce the security guarantees provided by TLS and o…
- CVE-2024-13956MEDIUMCVSS 6.7EG 6.72025-05-22
SSL Verification Bypass vulnerabilities exist in ASPECT if administrator credentials become compromisedThis issue affects ASPECT-Enterprise: through 3.*; NEXUS Series: through 3.*; MATRIX Series: through 3.*.
- CVE-2024-13990CRITICALCVSS 9.3EG 9.32025-09-19
MicroWorld eScan AV's update mechanism failed to ensure authenticity and integrity of updates: update packages were delivered and accepted without robust cryptographic verification. As a result, an on-path attacker could perform a man-in-t…
- CVE-2024-14024MEDIUMCVSS 6.7EG 6.72026-03-11
An improper certificate validation vulnerability has been reported to affect Video Station. If an attacker gains local network access who have also gained an administrator account, they can then exploit the vulnerability to compromise the …
- CVE-2024-20080CRITICALCVSS 9.8EG 9.82024-07-01
In gnss service, there is a possible escalation of privilege due to improper certificate validation. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for explo…
- CVE-2024-20385MEDIUMCVSS 5.9EG 5.92024-10-02
A vulnerability in the SSL/TLS implementation of Cisco Nexus Dashboard Orchestrator (NDO) could allow an unauthenticated, remote attacker to intercept sensitive information from an affected device. This vulnerability exists becaus…
- CVE-2024-2048HIGHCVSS 8.1EG 8.12024-03-04
Vault and Vault Enterprise (“Vault”) TLS certificate auth method did not correctly validate client certificates when configured with a non-CA certificate as trusted certificate. In this configuration, an attacker may be able to craft a…
- CVE-2024-21543HIGHCVSS 7.1EG 7.12024-12-13
Versions of the package djoser before 2.3.0 are vulnerable to Authentication Bypass when the authenticate() function fails. This is because the system falls back to querying the database directly, granting access to users with valid creden…
- CVE-2024-22030HIGHCVSS 8.0EG 8.02024-10-16
A vulnerability has been identified within Rancher that can be exploited in narrow circumstances through a man-in-the-middle (MITM) attack. An attacker would need to have control of an expired domain or execute a DNS spoofing/hijacking …
- CVE-2024-23273MEDIUMCVSS 4.3EG 4.32024-03-08
This issue was addressed through improved state management. This issue is fixed in Safari 17.4, iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4. Private Browsing tabs may be accessed without authentication.
- CVE-2024-2379MEDIUMCVSS 6.3EG 6.32024-03-27
libcurl skips the certificate verification for a QUIC connection under certain conditions, when built to use wolfSSL. If told to use an unknown/bad cipher or curve, the error path accidentally skips the verification and returns OK, thus ig…
- CVE-2024-23928HIGHCVSS 6.5EG 8.12025-01-31
This vulnerability allows network-adjacent attackers to compromise the integrity of downloaded information on affected installations of Pioneer DMH-WT7600NEX devices. Authentication is not required to exploit this vulnerability. The speci…
- CVE-2024-23970MEDIUMCVSS 6.5EG 6.52025-01-31
This vulnerability allows network-adjacent attackers to compromise transport security on affected installations of ChargePoint Home Flex charging stations. Authentication is not required to exploit this vulnerability. The specific flaw ex…
- CVE-2024-25053MEDIUMCVSS 5.9EG 5.92024-06-28
IBM Cognos Analytics 11.2.0, 11.2.1, 11.2.2, 11.2.3, 11.2.4, 12.0.0, 12.0.1, and 12.0.2 is vulnerable to improper certificate validation when using the IBM Planning Analytics Data Source Connection. This could allow an attacker to spoof a …
- CVE-2024-25140CRITICALCVSS 9.8EG 9.82024-02-06
A default installation of RustDesk 1.2.3 on Windows places a WDKTestCert certificate under Trusted Root Certification Authorities with Enhanced Key Usage of Code Signing (1.3.6.1.5.5.7.3.3), valid from 2023 until 2033. This is potentially …
- CVE-2024-25141CRITICALCVSS 9.1EG 9.12024-02-20
When ssl was enabled for Mongo Hook, default settings included "allow_insecure" which caused that certificates were not validated. This was unexpected and undocumented. Users are recommended to upgrade to version 4.0.0, which fixes this i…
- CVE-2024-25642HIGHCVSS 7.4EG 7.42024-02-13
Due to improper validation of certificate in SAP Cloud Connector - version 2.0, attacker can impersonate the genuine servers to interact with SCC breaking the mutual authentication. Hence, the attacker can intercept the request to view/mod…
- CVE-2024-27323HIGHCVSS 7.5EG 7.52024-04-01
PDF-XChange Editor Updater Improper Certificate Validation Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interactio…
- CVE-2024-27440MEDIUMCVSS 4.8EG 4.82024-03-13
The Toyoko Inn official App for iOS versions prior to 1.13.0 and Toyoko Inn official App for Android versions prior 1.3.14 don't properly verify server certificates, which allows a man-in-the-middle attacker to spoof servers and obtain sen…
- CVE-2024-28021HIGHCVSS 7.4EG 8.02024-06-11
A vulnerability exists in the FOXMAN-UN/UNEM server that affects the message queueing mechanism’s certificate validation. If exploited an attacker could spoof a trusted entity causing a loss of confidentiality and integrity.
- CVE-2024-28067MEDIUMCVSS 5.3EG 5.32024-07-09
A vulnerability in Samsung Exynos Modem 5300 allows a Man-in-the-Middle (MITM) attacker to downgrade the security mode of packets going to the victim, enabling the attacker to send messages to the victim in plaintext.
- CVE-2024-28161MEDIUMCVSS 5.3EG 5.32024-03-06
In Jenkins Delphix Plugin 3.0.1, a global option for administrators to enable or disable SSL/TLS certificate validation for Data Control Tower (DCT) connections is disabled by default.
- CVE-2024-28162MEDIUMCVSS 4.2EG 4.22024-03-06
In Jenkins Delphix Plugin 3.0.1 through 3.1.0 (both inclusive) a global option for administrators to enable or disable SSL/TLS certificate validation for Data Control Tower (DCT) connections fails to take effect until Jenkins is restarted …
- CVE-2024-28872HIGHCVSS 8.9EG 8.92024-07-11
The TLS certificate validation code is flawed. An attacker can obtain a TLS certificate from the Stork server and use it to connect to the Stork agent. Once this connection is established with the valid certificate, the attacker can send m…
- CVE-2024-29050HIGHCVSS 8.4EG 8.42024-04-09
Windows Cryptographic Services Remote Code Execution Vulnerability
- CVE-2024-29072HIGHCVSS 8.2EG 8.22024-05-28
A privilege escalation vulnerability exists in the Foxit Reader 2024.2.0.25138. The vulnerability occurs due to improper certification validation of the updater executable before executing it. A low privilege user can trigger the update ac…
- CVE-2024-29171MEDIUMCVSS 5.9EG 5.92025-02-12
Dell BSAFE SSL-J, versions prior to 6.6 and versions 7.0 through 7.2, contains an Improper certificate verification vulnerability. A remote attacker could potentially exploit this vulnerability, leading to information disclosure.
- CVE-2024-29733LOWCVSS 2.7EG 2.72024-04-21
Improper Certificate Validation vulnerability in Apache Airflow FTP Provider. The FTP hook lacks complete certificate validation in FTP_TLS connections, which can potentially be leveraged. Implementing proper certificate validation by pas…
- CVE-2024-29887HIGHCVSS 7.4EG 7.42024-03-27
Serverpod is an app and web server, built for the Flutter and Dart ecosystem. This bug bypassed the validation of TSL certificates on all none web HTTP clients in the `serverpod_client` package. Making them susceptible to a man in the midd…
- CVE-2024-30020HIGHCVSS 8.1EG 8.12024-05-14
Windows Cryptographic Services Remote Code Execution Vulnerability
- CVE-2024-30134MEDIUMCVSS 6.7EG 6.72024-09-26
The HCL Traveler for Microsoft Outlook executable (HTMO.exe) is being flagged as potentially Malicious Software or an Unrecognized Application.
- CVE-2024-30149MEDIUMCVSS 4.8EG 4.82024-10-31
HCL AppScan Source <= 10.6.0 does not properly validate a TLS/SSL certificate for an executable.
- CVE-2024-31340MEDIUMCVSS 4.8EG 4.82024-05-22
TP-Link Tether versions prior to 4.5.13 and TP-Link Tapo versions prior to 3.3.6 do not properly validate certificates, which may allow a remote unauthenticated attacker to eavesdrop on an encrypted communication via a man-in-the-middle at…
- CVE-2024-31489MEDIUMCVSS 6.8EG 6.82024-09-10
AAn improper certificate validation vulnerability [CWE-295] in FortiClientWindows 7.2.0 through 7.2.2, 7.0.0 through 7.0.11, FortiClientLinux 7.2.0, 7.0.0 through 7.0.11 and FortiClientMac 7.0.0 through 7.0.11, 7.2.0 through 7.2.4 may all…
- CVE-2024-31853HIGHCVSS 8.1EG 8.12025-07-08
A vulnerability has been identified in SICAM TOOLBOX II (All versions < V07.11). During establishment of a https connection to the TLS server of a managed device, the affected application doesn't check the extended key usage attribute of t…
- CVE-2024-31854HIGHCVSS 8.1EG 8.12025-07-08
A vulnerability has been identified in SICAM TOOLBOX II (All versions < V07.11). During establishment of a https connection to the TLS server of a managed device, the affected application doesn't check device's certificate common name agai…
- CVE-2024-31871HIGHCVSS 7.5EG 7.52024-04-10
IBM Security Verify Access Appliance 10.0.0 through 10.0.7 could allow a malicious actor to conduct a man in the middle attack when deploying Python scripts due to improper certificate validation. IBM X-Force ID: 287306.
- CVE-2024-31872HIGHCVSS 7.5EG 7.52024-04-10
IBM Security Verify Access Appliance 10.0.0 through 10.0.7 could allow a malicious actor to conduct a man in the middle attack when deploying Open Source scripts due to missing certificate validation. IBM X-Force ID: 287316.
- CVE-2024-31955MEDIUMCVSS 4.9EG 4.92024-10-15
An issue was discovered in Samsung eMMC with KLMAG2GE4A and KLM8G1WEMB firmware. Code bypass through Electromagnetic Fault Injection allows an attacker to successfully authenticate and write to the RPMB (Replay Protected Memory Block) area…
- CVE-2024-32865MEDIUMCVSS 6.4EG 6.42024-08-01
Under certain circumstances the exacqVision Server will not properly validate TLS certificates provided by connected devices.
- CVE-2024-32928MEDIUMCVSS 5.9EG 5.92024-08-19
The libcurl CURLOPT_SSL_VERIFYPEER option was disabled on a subset of requests made by Nest production devices which enabled a potential man-in-the-middle attack on requests to Google cloud services by any host the traffic was routed throu…
- CVE-2024-33509MEDIUMCVSS 4.8EG 4.82024-07-09
An improper certificate validation vulnerability [CWE-295] in FortiWeb 7.2.0 through 7.2.1, 7.0 all versions, 6.4 all versions and 6.3 all versions may allow a remote and unauthenticated attacker in a Man-in-the-Middle position to decipher…
- CVE-2024-33612MEDIUMCVSS 6.8EG 6.82024-05-08
An improper certificate validation vulnerability exists in BIG-IP Next Central Manager and may allow an attacker to impersonate an Instance Provider system. Note: Software versions which have reached End of Technical Support (EoTS) are …
- CVE-2024-35140HIGHCVSS 7.7EG 7.72024-05-31
IBM Security Verify Access Docker 10.0.0 through 10.0.6 could allow a local user to escalate their privileges due to improper certificate validation. IBM X-Force ID: 292416.
- CVE-2024-35299MEDIUMCVSS 5.9EG 5.92024-05-16
In JetBrains YouTrack before 2024.1.29548 the SMTPS protocol communication lacked proper certificate hostname validation
- CVE-2024-37311HIGHCVSS 8.2EG 8.22024-08-23
Collabora Online is a collaborative online office suite based on LibreOffice. In affected versions of Collabora Online, https connections from coolwsd to other hosts may incompletely verify the remote host's certificate's against the full …
- CVE-2024-3738HIGHCVSS 7.3EG 7.32024-04-13
A vulnerability classified as critical has been found in cym1102 nginxWebUI up to 3.9.9. This affects the function handlePath of the file /adminPage/conf/saveCmd. The manipulation of the argument nginxPath leads to improper certificate val…
Map vulnerabilities like CWE-295 to your infrastructure
EchelonGraph correlates every CVE — across CWE-295 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →