CWE-322 - Key Exchange without Entity Authentication

Description

The product performs a key exchange with an actor without verifying the identity of that actor.

Latest vulnerabilities for CWE-322

References

Description of CWE-322 on Mitre website