Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-2720

Опубликовано: 22 нояб. 2017
Источник: nvd
CVSS3: 5.3
CVSS2: 5
EPSS Низкий

Описание

FusionSphere OpenStack V100R006C00 has an information exposure vulnerability. The software uses hard-coded cryptographic key to encrypt messages between certain components, which significantly increases the possibility that encrypted data may be recovered and results in information exposure.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:huawei:fusionsphere_openstack:v100r006c00:*:*:*:*:*:*:*

EPSS

Процентиль: 27%
0.00095
Низкий

5.3 Medium

CVSS3

5 Medium

CVSS2

Дефекты

CWE-798

Связанные уязвимости

CVSS3: 5.3
github
больше 3 лет назад

FusionSphere OpenStack V100R006C00 has an information exposure vulnerability. The software uses hard-coded cryptographic key to encrypt messages between certain components, which significantly increases the possibility that encrypted data may be recovered and results in information exposure.

EPSS

Процентиль: 27%
0.00095
Низкий

5.3 Medium

CVSS3

5 Medium

CVSS2

Дефекты

CWE-798