Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2xxp-jv88-pg4x

Опубликовано: 27 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

IBM Storage Defender 2.0.0 through 2.0.7 on-prem defender-sensor-cmd CLI

could allow a remote attacker to obtain sensitive information, caused by sending network requests over an insecure channel. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques.

IBM Storage Defender 2.0.0 through 2.0.7 on-prem defender-sensor-cmd CLI

could allow a remote attacker to obtain sensitive information, caused by sending network requests over an insecure channel. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques.

EPSS

Процентиль: 14%
0.00047
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-311

Связанные уязвимости

CVSS3: 5.9
nvd
около 1 года назад

IBM Storage Defender 2.0.0 through 2.0.7 on-prem defender-sensor-cmd CLI could allow a remote attacker to obtain sensitive information, caused by sending network requests over an insecure channel. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques.

CVSS3: 5.9
fstec
больше 1 года назад

Уязвимость компонента Defender Sensor службы IBM Storage Defender Data Resiliency Service (DRS) средства защиты данных IBM Storage Defender, позволяющая нарушителю реализовать атаку типа «человек посередине»

EPSS

Процентиль: 14%
0.00047
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-311