Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v66p-q797-c8vm

Опубликовано: 28 авг. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 6.8

Описание

QBiC CLOUD CC-2L v1.1.30 and earlier and Safie One v1.8.2 and earlier do not properly validate certificates, which may allow a network-adjacent unauthenticated attacker to obtain and/or alter communications of the affected product via a man-in-the-middle attack.

QBiC CLOUD CC-2L v1.1.30 and earlier and Safie One v1.8.2 and earlier do not properly validate certificates, which may allow a network-adjacent unauthenticated attacker to obtain and/or alter communications of the affected product via a man-in-the-middle attack.

EPSS

Процентиль: 42%
0.00199
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-295

Связанные уязвимости

CVSS3: 6.8
nvd
больше 1 года назад

QBiC CLOUD CC-2L v1.1.30 and earlier and Safie One v1.8.2 and earlier do not properly validate certificates, which may allow a network-adjacent unauthenticated attacker to obtain and/or alter communications of the affected product via a man-in-the-middle attack.

EPSS

Процентиль: 42%
0.00199
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-295