Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j6wf-jr95-r768

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The vulnerability have been reported to affect earlier versions of Helpdesk. If exploited, this improper certificate validation vulnerability could allow an attacker to spoof a trusted entity by interfering in the communication path between the host and client. QNAP has already fixed the issue in Helpdesk 3.0.3 and later.

The vulnerability have been reported to affect earlier versions of Helpdesk. If exploited, this improper certificate validation vulnerability could allow an attacker to spoof a trusted entity by interfering in the communication path between the host and client. QNAP has already fixed the issue in Helpdesk 3.0.3 and later.

EPSS

Процентиль: 28%
0.001
Низкий

Связанные уязвимости

CVSS3: 4.2
nvd
больше 5 лет назад

The vulnerability have been reported to affect earlier versions of Helpdesk. If exploited, this improper certificate validation vulnerability could allow an attacker to spoof a trusted entity by interfering in the communication path between the host and client. QNAP has already fixed the issue in Helpdesk 3.0.3 and later.

EPSS

Процентиль: 28%
0.001
Низкий