Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-1010283

Опубликовано: 17 июл. 2019
Источник: nvd
CVSS3: 7.5
CVSS2: 5
EPSS Низкий

Описание

Univention Corporate Server univention-directory-notifier 12.0.1-3 and earlier is affected by: CWE-213: Intentional Information Exposure. The impact is: Loss of Confidentiality. The component is: function data_on_connection() in src/callback.c. The attack vector is: network connectivity. The fixed version is: 12.0.1-4 and later.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:univention:univention_corporate_server:*:*:*:*:*:*:*:*
Версия до 12.0.1-3 (включая)

EPSS

Процентиль: 50%
0.0027
Низкий

7.5 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-213
CWE-200

Связанные уязвимости

CVSS3: 7.5
github
больше 3 лет назад

Univention Corporate Server univention-directory-notifier 12.0.1-3 and earlier is affected by: CWE-213: Intentional Information Exposure. The impact is: Loss of Confidentiality. The component is: function data_on_connection() in src/callback.c. The attack vector is: network connectivity. The fixed version is: 12.0.1-4 and later.

EPSS

Процентиль: 50%
0.0027
Низкий

7.5 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-213
CWE-200