Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2010-0009

Опубликовано: 31 мар. 2010
Источник: redhat
CVSS2: 4.3
EPSS Низкий

Описание

Apache CouchDB 0.8.0 through 0.10.1 allows remote attackers to obtain sensitive information by measuring the completion time of operations that verify (1) hashes or (2) passwords.

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=578572Apache CouchDB v0.10.0 prone to timing attacks vulnerability

EPSS

Процентиль: 70%
0.00643
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

ubuntu
почти 16 лет назад

Apache CouchDB 0.8.0 through 0.10.1 allows remote attackers to obtain sensitive information by measuring the completion time of operations that verify (1) hashes or (2) passwords.

nvd
почти 16 лет назад

Apache CouchDB 0.8.0 through 0.10.1 allows remote attackers to obtain sensitive information by measuring the completion time of operations that verify (1) hashes or (2) passwords.

debian
почти 16 лет назад

Apache CouchDB 0.8.0 through 0.10.1 allows remote attackers to obtain ...

github
почти 4 года назад

Apache CouchDB 0.8.0 through 0.10.1 allows remote attackers to obtain sensitive information by measuring the completion time of operations that verify (1) hashes or (2) passwords.

EPSS

Процентиль: 70%
0.00643
Низкий

4.3 Medium

CVSS2