Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-33983

Опубликовано: 24 мая 2023
Источник: nvd
CVSS3: 7.4
EPSS Низкий

Описание

The Introduction Client in Briar through 1.5.3 does not implement out-of-band verification for the public keys of introducees. An introducer can launch man-in-the-middle attacks against later private communication between two introduced parties.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:briarproject:briar:*:*:*:*:*:*:*:*
Версия до 1.5.3 (включая)

EPSS

Процентиль: 25%
0.00086
Низкий

7.4 High

CVSS3

Дефекты

CWE-862
CWE-862

Связанные уязвимости

CVSS3: 7.4
debian
больше 2 лет назад

The Introduction Client in Briar through 1.5.3 does not implement out- ...

CVSS3: 7.4
github
больше 2 лет назад

The Introduction Client in Briar through 1.5.3 does not implement out-of-band verification for the public keys of introducees. An introducer can launch man-in-the-middle attacks against later private communication between two introduced parties.

EPSS

Процентиль: 25%
0.00086
Низкий

7.4 High

CVSS3

Дефекты

CWE-862
CWE-862