Описание
easyMINE before 2019-12-05 ships with SSH host keys baked into the installation image, which allows man-in-the-middle attacks and makes identification of all public IPv4 nodes trivial with Shodan.io.
EPSS
Процентиль: 32%
0.00125
Низкий
5.6 Medium
CVSS3
Дефекты
CWE-300
Связанные уязвимости
CVSS3: 5.6
github
почти 2 года назад
easyMINE before 2019-12-05 ships with SSH host keys baked into the installation image, which allows man-in-the-middle attacks and makes identification of all public IPv4 nodes trivial with Shodan.io.
EPSS
Процентиль: 32%
0.00125
Низкий
5.6 Medium
CVSS3
Дефекты
CWE-300