Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m74j-pp4x-r2g8

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Cordaware bestinformed Microsoft Windows client before 6.2.1.0 is affected by insecure SSL certificate verification and insecure access patterns. These issues allow remote attackers to downgrade encrypted connections to cleartext.

Cordaware bestinformed Microsoft Windows client before 6.2.1.0 is affected by insecure SSL certificate verification and insecure access patterns. These issues allow remote attackers to downgrade encrypted connections to cleartext.

EPSS

Процентиль: 49%
0.00258
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-295

Связанные уязвимости

CVSS3: 9.8
nvd
почти 7 лет назад

Cordaware bestinformed Microsoft Windows client before 6.2.1.0 is affected by insecure SSL certificate verification and insecure access patterns. These issues allow remote attackers to downgrade encrypted connections to cleartext.

EPSS

Процентиль: 49%
0.00258
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-295