Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hg35-5j49-4jm5

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Gemalto Admin Control Center, all versions prior to 7.92, uses cleartext HTTP to communicate with www3.safenet-inc.com to obtain language packs. This allows attacker to do man-in-the-middle (MITM) attack and replace original language pack by malicious one.

Gemalto Admin Control Center, all versions prior to 7.92, uses cleartext HTTP to communicate with www3.safenet-inc.com to obtain language packs. This allows attacker to do man-in-the-middle (MITM) attack and replace original language pack by malicious one.

EPSS

Процентиль: 32%
0.00127
Низкий

Дефекты

CWE-346

Связанные уязвимости

CVSS3: 5.3
nvd
больше 6 лет назад

Gemalto Admin Control Center, all versions prior to 7.92, uses cleartext HTTP to communicate with www3.safenet-inc.com to obtain language packs. This allows attacker to do man-in-the-middle (MITM) attack and replace original language pack by malicious one.

EPSS

Процентиль: 32%
0.00127
Низкий

Дефекты

CWE-346