Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mvq5-g7h7-8rg5

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

IBM Planning Analytics 2.0 could allow a remote attacker to obtain sensitive information, caused by the lack of server hostname verification for SSL/TLS communication. By sending a specially-crafted request, an attacker could exploit this vulnerability to obtain sensitive information. IBM X-Force ID: 190851.

IBM Planning Analytics 2.0 could allow a remote attacker to obtain sensitive information, caused by the lack of server hostname verification for SSL/TLS communication. By sending a specially-crafted request, an attacker could exploit this vulnerability to obtain sensitive information. IBM X-Force ID: 190851.

EPSS

Процентиль: 45%
0.00224
Низкий

Дефекты

CWE-346

Связанные уязвимости

CVSS3: 7.5
nvd
около 5 лет назад

IBM Planning Analytics 2.0 could allow a remote attacker to obtain sensitive information, caused by the lack of server hostname verification for SSL/TLS communication. By sending a specially-crafted request, an attacker could exploit this vulnerability to obtain sensitive information. IBM X-Force ID: 190851.

EPSS

Процентиль: 45%
0.00224
Низкий

Дефекты

CWE-346