Логотип exploitDog
bind:CVE-2024-41256
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-41256

Количество 2

Количество 2

nvd логотип

CVE-2024-41256

больше 1 года назад

Default configurations in the ShareProofVerifier function of filestash v0.4 causes the application to skip the TLS certificate verification process when sending out email verification codes, possibly allowing attackers to access sensitive data via a man-in-the-middle attack.

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-mpvx-whpp-99xj

больше 1 года назад

Filestash skips TLS certificate verification process when sending out email verification codes

CVSS3: 8.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-41256

Default configurations in the ShareProofVerifier function of filestash v0.4 causes the application to skip the TLS certificate verification process when sending out email verification codes, possibly allowing attackers to access sensitive data via a man-in-the-middle attack.

CVSS3: 5.9
0%
Низкий
больше 1 года назад
github логотип
GHSA-mpvx-whpp-99xj

Filestash skips TLS certificate verification process when sending out email verification codes

CVSS3: 8.1
0%
Низкий
больше 1 года назад

Уязвимостей на страницу