Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qp68-wj26-pfpf

Опубликовано: 11 мар. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 3.7

Описание

Improper check for certificate revocation in i-FILTER Ver.10.45R01 and earlier, i-FILTER Ver.9.50R10 and earlier, i-FILTER Browser & Cloud MultiAgent for Windows Ver.4.93R04 and earlier, and D-SPA (Ver.3 / Ver.4) using i-FILTER allows a remote unauthenticated attacker to conduct a man-in-the-middle attack and eavesdrop on an encrypted communication.

Improper check for certificate revocation in i-FILTER Ver.10.45R01 and earlier, i-FILTER Ver.9.50R10 and earlier, i-FILTER Browser & Cloud MultiAgent for Windows Ver.4.93R04 and earlier, and D-SPA (Ver.3 / Ver.4) using i-FILTER allows a remote unauthenticated attacker to conduct a man-in-the-middle attack and eavesdrop on an encrypted communication.

EPSS

Процентиль: 61%
0.0041
Низкий

3.7 Low

CVSS3

Дефекты

CWE-295

Связанные уязвимости

CVSS3: 3.7
nvd
почти 4 года назад

Improper check for certificate revocation in i-FILTER Ver.10.45R01 and earlier, i-FILTER Ver.9.50R10 and earlier, i-FILTER Browser & Cloud MultiAgent for Windows Ver.4.93R04 and earlier, and D-SPA (Ver.3 / Ver.4) using i-FILTER allows a remote unauthenticated attacker to conduct a man-in-the-middle attack and eavesdrop on an encrypted communication.

EPSS

Процентиль: 61%
0.0041
Низкий

3.7 Low

CVSS3

Дефекты

CWE-295