Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8xj5-7j6q-7c3r

Опубликовано: 18 дек. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

IBM Storage Defender - Resiliency Service 2.0.0 through 2.0.9 does not properly validate a certificate which could allow an attacker to spoof a trusted entity by interfering in the communication path between the host and client.

IBM Storage Defender - Resiliency Service 2.0.0 through 2.0.9 does not properly validate a certificate which could allow an attacker to spoof a trusted entity by interfering in the communication path between the host and client.

EPSS

Процентиль: 29%
0.00106
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-295

Связанные уязвимости

CVSS3: 5.9
nvd
около 1 года назад

IBM Storage Defender - Resiliency Service 2.0.0 through 2.0.9 does not properly validate a certificate which could allow an attacker to spoof a trusted entity by interfering in the communication path between the host and client.

EPSS

Процентиль: 29%
0.00106
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-295