Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8w7p-q234-6qwj

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Dameware Remote Mini Control version 12.1.0.34 and prior contains an unauthenticated remote buffer over-read due to the server not properly validating CltDHPubKeyLen during key negotiation, which could crash the application or leak sensitive information.

Dameware Remote Mini Control version 12.1.0.34 and prior contains an unauthenticated remote buffer over-read due to the server not properly validating CltDHPubKeyLen during key negotiation, which could crash the application or leak sensitive information.

EPSS

Процентиль: 74%
0.00853
Низкий

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 7.4
nvd
больше 6 лет назад

Dameware Remote Mini Control version 12.1.0.34 and prior contains an unauthenticated remote buffer over-read due to the server not properly validating CltDHPubKeyLen during key negotiation, which could crash the application or leak sensitive information.

EPSS

Процентиль: 74%
0.00853
Низкий

Дефекты

CWE-125