Skip to main content

Insufficient Verification of Data Authenticity

CVE-2014-9194

Severity Medium
Score 5.4/10

Summary

Arbiter 1094B GPS Substation Clock allows remote attackers to cause a denial of service (disruption) via crafted radio transmissions that spoof GPS satellite broadcasts.

  • HIGH
  • NETWORK
  • NONE
  • NONE
  • NONE
  • COMPLETE

CWE-345 - Insufficient Verification of Data Authenticity

The software does not sufficiently verify the origin or authenticity of data, in a way that causes it to accept invalid data.

References

Advisory Timeline

  • Published