Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cj4w-9xfh-m2w2

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The IBM Notes Traveler Companion application 1.0 and 1.1 before 201411010515 for Window Phone, as distributed in IBM Notes Traveler 9.0.1, does not properly restrict the number of executions of the automatic configuration option, which makes it easier for remote attackers to capture credentials by conducting a phishing attack involving an encrypted e-mail message.

The IBM Notes Traveler Companion application 1.0 and 1.1 before 201411010515 for Window Phone, as distributed in IBM Notes Traveler 9.0.1, does not properly restrict the number of executions of the automatic configuration option, which makes it easier for remote attackers to capture credentials by conducting a phishing attack involving an encrypted e-mail message.

EPSS

Процентиль: 73%
0.00749
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
почти 11 лет назад

The IBM Notes Traveler Companion application 1.0 and 1.1 before 201411010515 for Window Phone, as distributed in IBM Notes Traveler 9.0.1, does not properly restrict the number of executions of the automatic configuration option, which makes it easier for remote attackers to capture credentials by conducting a phishing attack involving an encrypted e-mail message.

EPSS

Процентиль: 73%
0.00749
Низкий

Дефекты

CWE-200