Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p7rw-cjjv-6cc4

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

JSCAPE Secure FTP Applet 4.8.0 and earlier does not ask the user to verify a new or mismatched SSH host key, which makes it easier for remote attackers to perform man-in-the-middle attacks.

JSCAPE Secure FTP Applet 4.8.0 and earlier does not ask the user to verify a new or mismatched SSH host key, which makes it easier for remote attackers to perform man-in-the-middle attacks.

EPSS

Процентиль: 79%
0.01306
Низкий

Дефекты

CWE-287

Связанные уязвимости

nvd
около 17 лет назад

JSCAPE Secure FTP Applet 4.8.0 and earlier does not ask the user to verify a new or mismatched SSH host key, which makes it easier for remote attackers to perform man-in-the-middle attacks.

EPSS

Процентиль: 79%
0.01306
Низкий

Дефекты

CWE-287