Описание
The NeoScale Systems CryptoStor 700 series appliance before 2.6 relies on client-side ActiveX code for smartcard authentication, which allows remote attackers to bypass smartcard authentication, and gain access if able to present a valid username and password, by disabling ActiveX.
Ссылки
- PatchVendor Advisory
- PatchUS Government Resource
- PatchVendor Advisory
- PatchUS Government Resource
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:h:neoscale_systems:cryptostor_tape_700:*:*:*:*:*:*:*:*
EPSS
Процентиль: 61%
0.0042
Низкий
4.9 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
The NeoScale Systems CryptoStor 700 series appliance before 2.6 relies on client-side ActiveX code for smartcard authentication, which allows remote attackers to bypass smartcard authentication, and gain access if able to present a valid username and password, by disabling ActiveX.
EPSS
Процентиль: 61%
0.0042
Низкий
4.9 Medium
CVSS2
Дефекты
NVD-CWE-Other