Логотип exploitDog
bind:CVE-2008-3249
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2008-3249

Количество 2

Количество 2

nvd логотип

CVE-2008-3249

больше 17 лет назад

The client in Lenovo System Update before 3.14 does not properly validate the certificate when establishing an SSL connection, which allows remote attackers to install arbitrary packages via an SSL certificate whose X.509 headers match a public certificate used by IBM.

CVSS2: 5.1
EPSS: Низкий
github логотип

GHSA-m2pg-h6p9-9j46

почти 4 года назад

The client in Lenovo System Update before 3.14 does not properly validate the certificate when establishing an SSL connection, which allows remote attackers to install arbitrary packages via an SSL certificate whose X.509 headers match a public certificate used by IBM.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2008-3249

The client in Lenovo System Update before 3.14 does not properly validate the certificate when establishing an SSL connection, which allows remote attackers to install arbitrary packages via an SSL certificate whose X.509 headers match a public certificate used by IBM.

CVSS2: 5.1
1%
Низкий
больше 17 лет назад
github логотип
GHSA-m2pg-h6p9-9j46

The client in Lenovo System Update before 3.14 does not properly validate the certificate when establishing an SSL connection, which allows remote attackers to install arbitrary packages via an SSL certificate whose X.509 headers match a public certificate used by IBM.

1%
Низкий
почти 4 года назад

Уязвимостей на страницу