Описание
Microsys CyberPatrol uses weak encryption (trivial encoding) for credit card numbers and uses no encryption for the remainder of the information during registration, which could allow attackers to sniff network traffic and obtain this sensitive information.
Ссылки
- ExploitVendor Advisory
- ExploitVendor Advisory
- ExploitVendor Advisory
- ExploitVendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:microsys:cyberpatrol:4.04.003:*:*:*:*:*:*:*
cpe:2.3:a:microsys:cyberpatrol:4.04.005:*:*:*:*:*:*:*
EPSS
Процентиль: 78%
0.01218
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 3 лет назад
Microsys CyberPatrol uses weak encryption (trivial encoding) for credit card numbers and uses no encryption for the remainder of the information during registration, which could allow attackers to sniff network traffic and obtain this sensitive information.
EPSS
Процентиль: 78%
0.01218
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other