Skip to main content

CWE archive

CWE-924 CVEs

Programmatic archive

34 CVEs tagged with CWE-9244 Critical, 13 High, 14 Medium, 3 Low, 0 Unrated.

CVE-2026-54891

Published Jul 2, 2026

Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability in Erlang/OTP ssl (tls_gen_connection module) allows a network-positioned at…

CVSS 6.3 · Medium
evidence mentions
6
Buzz score
37.5
Vendor/product tagsBeta · best-effort

CVE-2026-12576

Published Jul 1, 2026

DVP80ES3 with Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability.

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2019-25719

Published Jun 2, 2026

Dräger Infinity Acute Care System and Standalone Infinity M540 patient monitors running software versions VG4.1.1, VG4.0.3, and lower contain network message handling vulnerabilit…

CVSS 8.8 · High
evidence mentions
2
Buzz score
21.0

CVE-2026-39827

Published May 22, 2026

An authenticated SSH client that repeatedly opened channels which were rejected by the server caused unbounded memory growth, eventually crashing the server process and affecting…

CVSS 6.5 · Medium
evidence mentions
5
Buzz score
37.9
Vendor/product tagsBeta · best-effort

CVE-2025-29628

Published Jul 25, 2025

A Gardyn Azure IoT Hub connection string is downloaded over an insecure HTTP connection in Gardyn Home Kit firmware before master.619, Home Kit Mobile Application before 2.11.0, a…

CVSS 9.4 · Critical
evidence mentions
1
Buzz score
11.9

CVE-2025-0592

Published Feb 14, 2025

The vulnerability may allow a remote low priviledged attacker to run arbitrary shell commands by manipulating the firmware file and uploading it to the device.

CVSS 8.8 · High
evidence mentions
6
Buzz score
39.5

CVE-2024-12399

Published Jan 17, 2025

CWE-924: Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability exists that could cause partial loss of confidentiality, loss of in…

CVSS 6.1 · Medium

CVE-2024-8933

Published Nov 13, 2024

CWE-924: Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability exists that could cause retrieval of password hash that could lead…

CVSS 7.5 · High

CVE-2024-52288

Published Nov 11, 2024

libosdp is an implementation of IEC 60839-11-5 OSDP (Open Supervised Device Protocol) and provides a C library with support for C++, Rust and Python3. In affected versions an unex…

CVSS 5.1 · Medium

CVE-2024-44730

Published Oct 11, 2024

Incorrect access control in the function handleDataChannelChat(dataMessage) of Mirotalk before commit c21d58 allows attackers to forge chat messages using an arbitrary sender name.

CVSS 9.1 · Critical

CVE-2020-11639

Published Jul 23, 2024

An attacker could exploit the vulnerability by injecting garbage data or specially crafted data. Depending on the data injected each process might be affected differently. The pro…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-6408

Published Feb 14, 2024

CWE-924: Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability exists that could cause a denial of service and loss of confidentia…

CVSS 8.1 · High

CVE-2023-49933

Published Dec 14, 2023

An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x. There is Improper Enforcement of Message Integrity During Transmission in a Communication Channel. This all…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2015-2968

Published Oct 31, 2023

LINE@ for Android version 1.0.0 and LINE@ for iOS version 1.0.0 are vulnerable to MITM (man-in-the-middle) attack since the application allows non-SSL/TLS communications. As a res…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-0897

Published Oct 31, 2023

LINE for Android version 5.0.2 and earlier and LINE for iOS version 5.0.0 and earlier are vulnerable to MITM (man-in-the-middle) attack since the application allows non-SSL/TLS co…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-43297

Published Oct 2, 2023

An issue in animal-art-lab v13.6.1 allows attackers to send crafted notifications via leakage of the channel access token.

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-26979

Published Aug 3, 2023

Bluetens Electrostimulation Device BluetensQ device app version 4.3.15 is vulnerable to Man-in-the-middle attacks in the BLE channel. It allows attackers to decrease or increase t…

CVSS 3.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2023-2885

Published May 25, 2023

Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability in CBOT Chatbot allows Adversary in the Middle (AiTM). This issue affects C…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort
Showing 1-25 of 34 CVEsPage 1 of 2