Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mpf7-m9x4-8pxw

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

Microsec e-Szigno before 3.2.7.12 allows remote attackers to perform XML signature wrapping attacks via an e-akta signed document with a ds:Object node with a crafted payload prepended to a valid ds:Object.

Microsec e-Szigno before 3.2.7.12 allows remote attackers to perform XML signature wrapping attacks via an e-akta signed document with a ds:Object node with a crafted payload prepended to a valid ds:Object.

EPSS

Процентиль: 57%
0.00355
Низкий

7.8 High

CVSS3

Дефекты

CWE-91

Связанные уязвимости

CVSS3: 7.8
nvd
больше 8 лет назад

Microsec e-Szigno before 3.2.7.12 allows remote attackers to perform XML signature wrapping attacks via an e-akta signed document with a ds:Object node with a crafted payload prepended to a valid ds:Object.

EPSS

Процентиль: 57%
0.00355
Низкий

7.8 High

CVSS3

Дефекты

CWE-91