Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qh2p-g6jp-838m

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Cisco TelePresence IX5000 8.0.3 stores a private key associated with an X.509 certificate under the web root with insufficient access control, which allows remote attackers to obtain cleartext versions of HTTPS traffic or spoof devices via a direct request to the certificate directory, aka Bug ID CSCuu63501.

Cisco TelePresence IX5000 8.0.3 stores a private key associated with an X.509 certificate under the web root with insufficient access control, which allows remote attackers to obtain cleartext versions of HTTPS traffic or spoof devices via a direct request to the certificate directory, aka Bug ID CSCuu63501.

EPSS

Процентиль: 38%
0.00168
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
больше 10 лет назад

Cisco TelePresence IX5000 8.0.3 stores a private key associated with an X.509 certificate under the web root with insufficient access control, which allows remote attackers to obtain cleartext versions of HTTPS traffic or spoof devices via a direct request to the certificate directory, aka Bug ID CSCuu63501.

EPSS

Процентиль: 38%
0.00168
Низкий

Дефекты

CWE-200