Описание
Trend Micro ServerProtect for Linux 3.0 before CP 1531 allows attackers to eavesdrop and tamper with updates by leveraging unencrypted communications with update servers.
Ссылки
- ExploitThird Party AdvisoryVDB Entry
- ExploitMailing ListThird Party Advisory
- Third Party AdvisoryVDB Entry
- PatchVendor Advisory
- ExploitTechnical DescriptionThird Party Advisory
- ExploitThird Party AdvisoryVDB Entry
- ExploitMailing ListThird Party Advisory
- Third Party AdvisoryVDB Entry
- PatchVendor Advisory
- ExploitTechnical DescriptionThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:trendmicro:serverprotect:3.0:*:*:*:*:linux:*:*
EPSS
Процентиль: 71%
0.00675
Низкий
7.4 High
CVSS3
5.8 Medium
CVSS2
Дефекты
CWE-319
Связанные уязвимости
CVSS3: 7.4
github
больше 3 лет назад
Trend Micro ServerProtect for Linux 3.0 before CP 1531 allows attackers to eavesdrop and tamper with updates by leveraging unencrypted communications with update servers.
EPSS
Процентиль: 71%
0.00675
Низкий
7.4 High
CVSS3
5.8 Medium
CVSS2
Дефекты
CWE-319