Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-20435

Опубликовано: 23 сент. 2021
Источник: nvd
CVSS3: 2.5
CVSS3: 5.5
CVSS2: 2.1
EPSS Низкий

Описание

IBM Security Verify Bridge 1.0.5.0 does not properly validate a certificate which could allow a local attacker to obtain sensitive information that could aid in further attacks against the system. IBM X-Force ID: 196355.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:ibm:security_verify_bridge:*:*:*:*:*:*:*:*
Версия до 1.0.7 (исключая)

EPSS

Процентиль: 5%
0.00022
Низкий

2.5 Low

CVSS3

5.5 Medium

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-295

Связанные уязвимости

github
больше 3 лет назад

IBM Security Verify Bridge 1.0.5.0 does not properly validate a certificate which could allow a local attacker to obtain sensitive information that could aid in further attacks against the system. IBM X-Force ID: 196355.

EPSS

Процентиль: 5%
0.00022
Низкий

2.5 Low

CVSS3

5.5 Medium

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-295