CAPEC Related Weakness
Web Services API Signature Forgery Leveraging Hash Function Extension Weakness
CWE-290 Authentication Bypass by Spoofing
CWE-328 Use of Weak Hash
Subvert Code-signing Facilities
CWE-325 Missing Cryptographic Step
CWE-328 Use of Weak Hash
CWE-1326 Missing Immutable Root of Trust in Hardware