Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5p7c-7c2x-v2f8

Опубликовано: 22 нояб. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 8.6

Описание

Dell Unity prior to 5.3 contains a 'man in the middle' vulnerability in the vmadapter component. If a customer has a certificate signed by a third-party public Certificate Authority, the vCenter CA could be spoofed by an attacker who can obtain a CA-signed certificate.

Dell Unity prior to 5.3 contains a 'man in the middle' vulnerability in the vmadapter component. If a customer has a certificate signed by a third-party public Certificate Authority, the vCenter CA could be spoofed by an attacker who can obtain a CA-signed certificate.

EPSS

Процентиль: 36%
0.00148
Низкий

8.6 High

CVSS3

Дефекты

CWE-295

Связанные уязвимости

CVSS3: 8.6
nvd
около 2 лет назад

Dell Unity prior to 5.3 contains a 'man in the middle' vulnerability in the vmadapter component. If a customer has a certificate signed by a third-party public Certificate Authority, the vCenter CA could be spoofed by an attacker who can obtain a CA-signed certificate.

EPSS

Процентиль: 36%
0.00148
Низкий

8.6 High

CVSS3

Дефекты

CWE-295