Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p7p5-mvjw-h6h6

Опубликовано: 16 нояб. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

Archery v1.10.0 uses a non-random or static IV for Cipher Block Chaining (CBC) mode in AES encryption. This vulnerability can lead to the disclosure of information and communications.

Archery v1.10.0 uses a non-random or static IV for Cipher Block Chaining (CBC) mode in AES encryption. This vulnerability can lead to the disclosure of information and communications.

EPSS

Процентиль: 36%
0.00155
Низкий

7.5 High

CVSS3

Дефекты

CWE-798

Связанные уязвимости

CVSS3: 7.5
nvd
около 2 лет назад

Archery v1.10.0 uses a non-random or static IV for Cipher Block Chaining (CBC) mode in AES encryption. This vulnerability can lead to the disclosure of information and communications.

EPSS

Процентиль: 36%
0.00155
Низкий

7.5 High

CVSS3

Дефекты

CWE-798