Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-14002

Опубликовано: 29 июн. 2020
Источник: nvd
CVSS3: 5.9
CVSS2: 4.3
EPSS Низкий

Описание

PuTTY 0.68 through 0.73 has an Observable Discrepancy leading to an information leak in the algorithm negotiation. This allows man-in-the-middle attackers to target initial connection attempts (where no host key for the server has been cached by the client).

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:putty:putty:*:*:*:*:*:*:*:*
Версия от 0.68 (включая) до 0.73 (включая)
Конфигурация 2
cpe:2.3:a:netapp:oncommand_unified_manager_core_package:-:*:*:*:*:*:*:*
Конфигурация 3

Одно из

cpe:2.3:o:fedoraproject:fedora:31:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:32:*:*:*:*:*:*:*

EPSS

Процентиль: 64%
0.00475
Низкий

5.9 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-203

Связанные уязвимости

CVSS3: 5.9
ubuntu
больше 5 лет назад

PuTTY 0.68 through 0.73 has an Observable Discrepancy leading to an information leak in the algorithm negotiation. This allows man-in-the-middle attackers to target initial connection attempts (where no host key for the server has been cached by the client).

CVSS3: 5.9
debian
больше 5 лет назад

PuTTY 0.68 through 0.73 has an Observable Discrepancy leading to an in ...

CVSS3: 5.9
github
больше 3 лет назад

PuTTY 0.68 through 0.73 has an Observable Discrepancy leading to an information leak in the algorithm negotiation. This allows man-in-the-middle attackers to target initial connection attempts (where no host key for the server has been cached by the client).

EPSS

Процентиль: 64%
0.00475
Низкий

5.9 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-203