Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6pqj-fh7p-c8hw

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.6

Описание

The 802.1X subsystem in Apple iOS before 8 and Apple TV before 7 does not require strong authentication methods, which allows remote attackers to calculate credentials by offering LEAP authentication from a crafted Wi-Fi AP and then performing a cryptographic attack against the MS-CHAPv1 hash.

The 802.1X subsystem in Apple iOS before 8 and Apple TV before 7 does not require strong authentication methods, which allows remote attackers to calculate credentials by offering LEAP authentication from a crafted Wi-Fi AP and then performing a cryptographic attack against the MS-CHAPv1 hash.

EPSS

Процентиль: 65%
0.00498
Низкий

5.6 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.6
nvd
больше 11 лет назад

The 802.1X subsystem in Apple iOS before 8 and Apple TV before 7 does not require strong authentication methods, which allows remote attackers to calculate credentials by offering LEAP authentication from a crafted Wi-Fi AP and then performing a cryptographic attack against the MS-CHAPv1 hash.

EPSS

Процентиль: 65%
0.00498
Низкий

5.6 Medium

CVSS3