Описание
IBM Security Verify Access Appliance 10.0.0 through 10.0.7 could allow a malicious actor to conduct a man in the middle attack when deploying Python scripts due to improper certificate validation. IBM X-Force ID: 287306.
Ссылки
- VDB EntryVendor Advisory
- Vendor Advisory
- VDB EntryVendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 10.0.0 (включая) до 10.0.7 (включая)
cpe:2.3:a:ibm:security_verify_access:*:*:*:*:*:*:*:*
EPSS
Процентиль: 35%
0.00147
Низкий
7.5 High
CVSS3
8.1 High
CVSS3
Дефекты
CWE-295
Связанные уязвимости
CVSS3: 7.5
github
почти 2 года назад
IBM Security Verify Access Appliance 10.0.0 through 10.0.7 could allow a malicious actor to conduct a man in the middle attack when deploying Python scripts due to improper certificate validation. IBM X-Force ID: 287306.
EPSS
Процентиль: 35%
0.00147
Низкий
7.5 High
CVSS3
8.1 High
CVSS3
Дефекты
CWE-295