Skip to main content

Improper Enforcement of Message Integrity During Transmission in a Communication Channel

CVE-2024-43450

Severity High
Score 7.5/10

Summary

Windows DNS Spoofing Vulnerability

  • HIGH
  • NETWORK
  • HIGH
  • UNCHANGED
  • REQUIRED
  • NONE
  • HIGH
  • HIGH

CWE-924 - Improper Enforcement of Message Integrity During Transmission in a Communication Channel

The software establishes a communication channel with an endpoint and receives a message from that endpoint, but it does not sufficiently ensure that the message was not modified during transmission.

References

Advisory Timeline

  • Published