Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-49rg-f69p-79rc

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7

Описание

An authentication weakness vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to recover user passwords on vulnerable installations due to a flaw in the DBCrypto class. An attacker must first obtain access to the user database on the target system in order to exploit this vulnerability.

An authentication weakness vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to recover user passwords on vulnerable installations due to a flaw in the DBCrypto class. An attacker must first obtain access to the user database on the target system in order to exploit this vulnerability.

EPSS

Процентиль: 29%
0.001
Низкий

7 High

CVSS3

Дефекты

CWE-522

Связанные уязвимости

CVSS3: 7
nvd
больше 7 лет назад

An authentication weakness vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to recover user passwords on vulnerable installations due to a flaw in the DBCrypto class. An attacker must first obtain access to the user database on the target system in order to exploit this vulnerability.

EPSS

Процентиль: 29%
0.001
Низкий

7 High

CVSS3

Дефекты

CWE-522