Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h9h2-jmvv-fr8c

Опубликовано: 10 апр. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

IBM Security Verify Access Appliance 10.0.0 through 10.0.7 could allow a malicious actor to conduct a man in the middle attack when deploying Python scripts due to improper certificate validation. IBM X-Force ID: 287306.

IBM Security Verify Access Appliance 10.0.0 through 10.0.7 could allow a malicious actor to conduct a man in the middle attack when deploying Python scripts due to improper certificate validation. IBM X-Force ID: 287306.

EPSS

Процентиль: 35%
0.00147
Низкий

7.5 High

CVSS3

Дефекты

CWE-295

Связанные уязвимости

CVSS3: 7.5
nvd
почти 2 года назад

IBM Security Verify Access Appliance 10.0.0 through 10.0.7 could allow a malicious actor to conduct a man in the middle attack when deploying Python scripts due to improper certificate validation. IBM X-Force ID: 287306.

EPSS

Процентиль: 35%
0.00147
Низкий

7.5 High

CVSS3

Дефекты

CWE-295