Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-42g4-xc42-5fr4

Опубликовано: 22 янв. 2022
Источник: github
Github: Не прошло ревью

Описание

Fresenius Kabi Agilia Link + version 3.0 does not enforce transport layer encryption. Therefore, transmitted data may be sent in cleartext. Transport layer encryption is offered on Port TCP/443, but the affected service does not perform an automated redirect from the unencrypted service on Port TCP/80 to the encrypted service.

Fresenius Kabi Agilia Link + version 3.0 does not enforce transport layer encryption. Therefore, transmitted data may be sent in cleartext. Transport layer encryption is offered on Port TCP/443, but the affected service does not perform an automated redirect from the unencrypted service on Port TCP/80 to the encrypted service.

EPSS

Процентиль: 16%
0.00049
Низкий

Дефекты

CWE-319

Связанные уязвимости

CVSS3: 7.3
nvd
около 4 лет назад

Fresenius Kabi Agilia Link + version 3.0 does not enforce transport layer encryption. Therefore, transmitted data may be sent in cleartext. Transport layer encryption is offered on Port TCP/443, but the affected service does not perform an automated redirect from the unencrypted service on Port TCP/80 to the encrypted service.

EPSS

Процентиль: 16%
0.00049
Низкий

Дефекты

CWE-319