CWE-924: Improper Enforcement of Message Integrity During Transmission in a Communication Channel

low-risk

The product establishes a communication channel with an endpoint and receives a message from that endpoint, but it does not sufficiently ensure that the message was not modified during transmission.

Abstraction: Base

Common Consequences

Integrity Gain Privileges or Assume Identity

Real-World Examples (10)

CVE CVSS EPSS KEV
CVE-2024-3596 9.0 15.3%
CVE-2024-43450 7.5 1.3%
CVE-2018-14526 6.5 1.1%
CVE-2023-3347 5.9 0.4%
CVE-2021-21390 6.5 0.4%
CVE-2021-21390 6.5 0.4%
CVE-2020-5869 9.1 0.3%
CVE-2023-22372 5.9 0.3%
CVE-2023-43297 5.4 0.2%
CVE-2021-41034 8.1 0.2%
1
/ 100
low-risk
Active Threat 1/50 · Minimal
Exploit Availability 0/50 · Minimal