Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r8ch-wqmp-x6mp

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Dameware Remote Mini Control version 12.1.0.34 and prior contains an unauthenticated remote buffer over-read due to the server not properly validating RsaSignatureLen during key negotiation, which could crash the application or leak sensitive information.

Dameware Remote Mini Control version 12.1.0.34 and prior contains an unauthenticated remote buffer over-read due to the server not properly validating RsaSignatureLen during key negotiation, which could crash the application or leak sensitive information.

EPSS

Процентиль: 91%
0.06636
Низкий

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 7.4
nvd
больше 6 лет назад

Dameware Remote Mini Control version 12.1.0.34 and prior contains an unauthenticated remote buffer over-read due to the server not properly validating RsaSignatureLen during key negotiation, which could crash the application or leak sensitive information.

EPSS

Процентиль: 91%
0.06636
Низкий

Дефекты

CWE-125