Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-3710

Опубликовано: 28 мар. 2019
Источник: nvd
CVSS3: 8.3
CVSS3: 8.1
CVSS2: 6.8
EPSS Низкий

Описание

Dell EMC Networking OS10 versions prior to 10.4.3 contain a cryptographic key vulnerability due to an underlying application using undocumented, pre-installed X.509v3 key/certificate pairs. An unauthenticated remote attacker with the knowledge of the default keys may potentially be able to intercept communications or operate the system with elevated privileges.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:dell:emc_networking_os10:*:*:*:*:*:*:*:*
Версия до 10.4.3 (исключая)

EPSS

Процентиль: 58%
0.00362
Низкий

8.3 High

CVSS3

8.1 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-798

Связанные уязвимости

CVSS3: 8.1
github
больше 3 лет назад

Dell EMC Networking OS10 versions prior to 10.4.3 contain a cryptographic key vulnerability due to an underlying application using undocumented, pre-installed X.509v3 key/certificate pairs. An unauthenticated remote attacker with the knowledge of the default keys may potentially be able to intercept communications or operate the system with elevated privileges.

EPSS

Процентиль: 58%
0.00362
Низкий

8.3 High

CVSS3

8.1 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-798