Количество 2
Количество 2
CVE-2019-7615
A TLS certificate validation flaw was found in Elastic APM agent for Ruby versions before 2.9.0. When specifying a trusted server CA certificate via the 'server_ca_cert' setting, the Ruby agent would not properly verify the certificate returned by the APM server. This could result in a man in the middle style attack against the Ruby agent.
GHSA-35j2-p8fh-x966
Elastic APM agent for Ruby vulnerable to Improper Certificate Validation
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2019-7615 A TLS certificate validation flaw was found in Elastic APM agent for Ruby versions before 2.9.0. When specifying a trusted server CA certificate via the 'server_ca_cert' setting, the Ruby agent would not properly verify the certificate returned by the APM server. This could result in a man in the middle style attack against the Ruby agent. | CVSS3: 7.4 | 0% Низкий | больше 6 лет назад | |
GHSA-35j2-p8fh-x966 Elastic APM agent for Ruby vulnerable to Improper Certificate Validation | CVSS3: 7.4 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу