CWE-295— Improper Certificate Validation
The product does not validate, or incorrectly validates, a certificate.— MITRE CWE catalog
1,642 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-295page 23 of 33
- CVE-2021-40713MEDIUMCVSS 5.9EG 5.92021-09-27
Adobe Experience Manager version 6.5.9.0 (and earlier) is affected by a improper certificate validation vulnerability in the cold storage component. If an attacker can achieve a man in the middle when the cold server establishes a new cert…
- CVE-2020-36477MEDIUMCVSS 5.9EG 5.92021-08-23
An issue was discovered in Mbed TLS before 2.24.0. The verification of X.509 certificates when matching the expected common name (the cn argument of mbedtls_x509_crt_verify) with the actual certificate name is mishandled: when the subjecAl…
- CVE-2021-39365MEDIUMCVSS 5.9EG 5.92021-08-22
In GNOME grilo though 0.3.13, grl-net-wc.c does not enable TLS certificate verification on the SoupSessionAsync objects it creates, leaving users vulnerable to network MITM attacks. NOTE: this is similar to CVE-2016-20011.
- CVE-2021-39361MEDIUMCVSS 5.9EG 5.92021-08-22
In GNOME evolution-rss through 0.3.96, network-soup.c does not enable TLS certificate verification on the SoupSessionSync objects it creates, leaving users vulnerable to network MITM attacks. NOTE: this is similar to CVE-2016-20011.
- CVE-2021-39360MEDIUMCVSS 5.9EG 5.92021-08-22
In GNOME libzapojit through 0.0.3, zpj-skydrive.c does not enable TLS certificate verification on the SoupSessionSync objects it creates, leaving users vulnerable to network MITM attacks. NOTE: this is similar to CVE-2016-20011.
- CVE-2021-39359MEDIUMCVSS 5.9EG 5.92021-08-22
In GNOME libgda through 6.0.0, gda-web-provider.c does not enable TLS certificate verification on the SoupSessionSync objects it creates, leaving users vulnerable to network MITM attacks. NOTE: this is similar to CVE-2016-20011.
- CVE-2021-39358MEDIUMCVSS 5.9EG 5.92021-08-22
In GNOME libgfbgraph through 0.2.4, gfbgraph-photo.c does not enable TLS certificate verification on the SoupSessionSync objects it creates, leaving users vulnerable to network MITM attacks. NOTE: this is similar to CVE-2016-20011.
- CVE-2021-21571MEDIUMCVSS 5.9EG 5.92021-06-24
Dell UEFI BIOS https stack leveraged by the Dell BIOSConnect feature and Dell HTTPS Boot feature contains an improper certificate validation vulnerability. A remote unauthenticated attacker may exploit this vulnerability using a person-in-…
- CVE-2021-22895MEDIUMCVSS 5.9EG 5.92021-06-11
Nextcloud Desktop Client before 3.3.1 is vulnerable to improper certificate validation due to lack of SSL certificate verification when using the "Register with a Provider" flow.
- CVE-2021-20732MEDIUMCVSS 5.9EG 5.92021-06-09
The ATOM (ATOM - Smart life App for Android versions prior to 1.8.1 and ATOM - Smart life App for iOS versions prior to 1.8.2) does not verify server certificate properly, which allows man-in-the-middle attackers to eavesdrop on encrypted …
- CVE-2021-29495MEDIUMCVSS 5.9EG 5.92021-05-07
Nim is a statically typed compiled systems programming language. In Nim standard library before 1.4.2, httpClient SSL/TLS certificate verification was disabled by default. Users can upgrade to version 1.4.2 to receive a patch or, as a work…
- CVE-2021-20989MEDIUMCVSS 5.9EG 5.92021-04-19
Fibaro Home Center 2 and Lite devices with firmware version 4.600 and older initiate SSH connections to the Fibaro cloud to provide remote access and remote support capabilities. This connection can be intercepted using DNS spoofing attack…
- CVE-2021-22189MEDIUMCVSS 5.9EG 5.92021-03-04
Starting with version 13.7 the Gitlab CE/EE editions were affected by a security issue related to the validation of the certificates for the Fortinet OTP that could result in authentication issues.
- CVE-2020-28972MEDIUMCVSS 5.9EG 5.92021-02-27
In SaltStack Salt before 3002.5, authentication to VMware vcenter, vsphere, and esxi servers (in the vmware.py files) does not always validate the SSL/TLS certificate.
- CVE-2021-27189MEDIUMCVSS 5.9EG 5.92021-02-23
The CIRA Canadian Shield app before 4.0.13 for iOS lacks SSL Certificate Validation.
- CVE-2020-24393MEDIUMCVSS 5.9EG 5.92021-02-19
TweetStream 2.6.1 uses the library eventmachine in an insecure way that does not have TLS hostname validation. This allows an attacker to perform a man-in-the-middle attack.
- CVE-2020-24392MEDIUMCVSS 5.9EG 5.92021-02-19
In voloko twitter-stream 0.1.10, missing TLS hostname validation allows an attacker to perform a man-in-the-middle attack against users of the library (because eventmachine is misused).
- CVE-2020-5812MEDIUMCVSS 5.9EG 5.92021-02-06
Nessus AMI versions 8.12.0 and earlier were found to either not validate, or incorrectly validate, a certificate which could allow an attacker to spoof a trusted entity by using a man-in-the-middle (MITM) attack.
- CVE-2020-13955MEDIUMCVSS 5.9EG 5.92020-10-09
HttpUtils#getURLConnection method disables explicitly hostname verification for HTTPS connections making clients vulnerable to man-in-the-middle attacks. Calcite uses internally this method to connect with Druid and Splunk so information l…
- CVE-2020-24619MEDIUMCVSS 5.9EG 5.92020-09-22
In mainwindow.cpp in Shotcut before 20.09.13, the upgrade check misuses TLS because of setPeerVerifyMode(QSslSocket::VerifyNone). A man-in-the-middle attacker could offer a spoofed download resource.
- CVE-2020-11617MEDIUMCVSS 5.9EG 5.92020-08-31
The RSS application on THOMSON THT741FTA 2.2.1 and Philips DTR3502BFTA DVB-T2 2.2.1 set-top boxes doesn't validate the SSL certificates of RSS servers, which allows a man-in-the-middle attacker to modify the data delivered to the client.
- CVE-2020-24661MEDIUMCVSS 5.9EG 5.92020-08-26
GNOME Geary before 3.36.3 mishandles pinned TLS certificate verification for IMAP and SMTP services using invalid TLS certificates (e.g., self-signed certificates) when the client system is not configured to use a system-provided PKCS#11 s…
- CVE-2020-15498MEDIUMCVSS 5.9EG 5.92020-08-26
An issue was discovered on ASUS RT-AC1900P routers before 3.0.0.4.385_20253. The router accepts an arbitrary server certificate for a firmware update. The culprit is the --no-check-certificate option passed to wget tool used to download fi…
- CVE-2020-12619MEDIUMCVSS 5.9EG 5.92020-08-20
MailMate before 1.11 automatically imported S/MIME certificates and thereby silently replaced existing ones. This allowed a man-in-the-middle attacker to obtain an email-validated S/MIME certificate from a trusted CA and replace the public…
- CVE-2020-15526MEDIUMCVSS 5.9EG 5.92020-07-09
In Redgate SQL Monitor 7.1.4 through 10.1.6 (inclusive), the scope for disabling some TLS security certificate checks can extend beyond that defined by various options on the Configuration > Notifications pages to disable certificate check…
- CVE-2020-15047MEDIUMCVSS 5.9EG 5.92020-06-25
MSA/SMTP.cpp in Trojita before 0.8 ignores certificate-verification errors, which allows man-in-the-middle attackers to spoof SMTP servers.
- CVE-2020-14981MEDIUMCVSS 5.9EG 5.92020-06-22
The ThreatTrack VIPRE Password Vault app through 1.100.1090 for iOS has Missing SSL Certificate Validation.
- CVE-2020-14980MEDIUMCVSS 5.9EG 5.92020-06-22
The Sophos Secure Email application through 3.9.4 for Android has Missing SSL Certificate Validation.
- CVE-2019-16252MEDIUMCVSS 5.9EG 5.92020-06-12
Missing SSL Certificate Validation in the Nutfind.com application through 3.9.12 for Android allows a man-in-the-middle attacker to sniff and manipulate all API requests, including login credentials and location data.
- CVE-2020-13254MEDIUMCVSS 5.9EG 5.92020-06-03
An issue was discovered in Django 2.2 before 2.2.13 and 3.0 before 3.0.7. In cases where a memcached backend does not perform key validation, passing malformed cache keys could result in a key collision, and potential data leakage.
- CVE-2020-13245MEDIUMCVSS 5.9EG 5.92020-05-28
Certain NETGEAR devices are affected by Missing SSL Certificate Validation. This affects R7000 1.0.9.6_1.2.19 through 1.0.11.100_10.2.10, and possibly R6120, R7800, R6220, R8000, R6350, R9000, R6400, RAX120, R6400v2, RBR20, R6800, XR300, R…
- CVE-2020-13616MEDIUMCVSS 5.9EG 5.92020-05-26
The boost ASIO wrapper in net/asio.cpp in Pichi before 1.3.0 lacks TLS hostname verification.
- CVE-2020-13615MEDIUMCVSS 5.9EG 5.92020-05-26
lib/QoreSocket.cpp in Qore before 0.9.4.2 lacks hostname verification for X.509 certificates.
- CVE-2020-13614MEDIUMCVSS 5.9EG 5.92020-05-26
An issue was discovered in ssl.c in Axel before 2.17.8. The TLS implementation lacks hostname verification.
- CVE-2020-11806MEDIUMCVSS 5.9EG 5.92020-04-23
In MailStore Outlook Add-in (and Email Archive Outlook Add-in) through 12.1.2, the login process does not validate the validity of the certificate presented by the server.
- CVE-2020-6175MEDIUMCVSS 5.9EG 5.92020-03-16
Citrix SD-WAN 10.2.x before 10.2.6 and 11.0.x before 11.0.3 has Missing SSL Certificate Validation.
- CVE-2019-20455MEDIUMCVSS 5.9EG 5.92020-02-14
Gateways/Gateway.php in Heartland & Global Payments PHP SDK before 2.0.0 does not enforce SSL certificate validations.
- CVE-2020-5526MEDIUMCVSS 5.9EG 5.92020-01-31
The AWMS Mobile App for Android 2.0.0 to 2.0.5 and for iOS 2.0.0 to 2.0.8 does not verify X.509 certificates from servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
- CVE-2014-3230MEDIUMCVSS 5.9EG 5.92020-01-28
The libwww-perl LWP::Protocol::https module 6.04 through 6.06 for Perl, when using IO::Socket::SSL as the SSL socket class, allows attackers to disable server certificate validation via the (1) HTTPS_CA_DIR or (2) HTTPS_CA_FILE environment…
- CVE-2020-3940MEDIUMCVSS 5.9EG 5.92020-01-17
VMware Workspace ONE SDK and dependent mobile application updates address sensitive information disclosure vulnerability.
- CVE-2012-1316MEDIUMCVSS 5.9EG 5.92020-01-15
Cisco IronPort Web Security Appliance does not check for certificate revocation which could lead to MITM attacks
- CVE-2014-0161MEDIUMCVSS 5.9EG 5.92020-01-02
ovirt-engine-sdk-python before 3.4.0.7 and 3.5.0.4 does not verify that the hostname of the remote endpoint matches the Common Name (CN) or subjectAltName as specified by its x.509 certificate in a TLS/SSL session. This could allow man-in-…
- CVE-2014-0104MEDIUMCVSS 5.9EG 5.92020-01-02
In fence-agents before 4.0.17 does not verify remote SSL certificates in the fence_cisco_ucs.py script which can potentially allow for man-in-the-middle attackers to spoof SSL servers via arbitrary SSL certificates.
- CVE-2019-11554MEDIUMCVSS 5.9EG 5.92019-12-06
The Audible application through 2.34.0 for Android has Missing SSL Certificate Validation for Adobe SDKs, allowing MITM attackers to cause a denial of service.
- CVE-2010-4532MEDIUMCVSS 5.9EG 5.92019-11-13
offlineimap before 6.3.2 does not check for SSL server certificate validation when "ssl = yes" option is specified which can allow man-in-the-middle attacks.
- CVE-2014-8167MEDIUMCVSS 5.9EG 5.92019-11-13
vdsm and vdsclient does not validate certficate hostname from another vdsm which could facilitate a man-in-the-middle attack
- CVE-2013-2255MEDIUMCVSS 5.9EG 5.92019-11-01
HTTPSConnections in OpenStack Keystone 2013, OpenStack Compute 2013.1, and possibly other OpenStack components, fail to validate server-side SSL certificates.
- CVE-2010-4237MEDIUMCVSS 5.9EG 5.92019-10-29
Mercurial before 1.6.4 fails to verify the Common Name field of SSL certificates which allows remote attackers who acquire a certificate signed by a Certificate Authority to perform a man-in-the-middle attack.
- CVE-2019-5538MEDIUMCVSS 5.9EG 5.92019-10-28
Sensitive information disclosure vulnerability resulting from a lack of certificate validation during the File-Based Backup and Restore operations of VMware vCenter Server Appliance (6.7 before 6.7u3a and 6.5 before 6.5u3d) may allow a mal…
- CVE-2019-5537MEDIUMCVSS 5.9EG 5.92019-10-28
Sensitive information disclosure vulnerability resulting from a lack of certificate validation during the File-Based Backup and Restore operations of VMware vCenter Server Appliance (6.7 before 6.7u3a and 6.5 before 6.5u3d) may allow a mal…
Map vulnerabilities like CWE-295 to your infrastructure
EchelonGraph correlates every CVE — across CWE-295 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →