Логотип exploitDog
bind:CVE-2016-15015
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2016-15015

Количество 2

Количество 2

nvd логотип

CVE-2016-15015

около 3 лет назад

A vulnerability, which was classified as problematic, was found in viafintech Barzahlen Payment Module PHP SDK up to 2.0.0. Affected is the function verify of the file src/Webhook.php. The manipulation leads to observable timing discrepancy. The complexity of an attack is rather high. The exploitability is told to be difficult. Upgrading to version 2.0.1 is able to address this issue. The patch is identified as 3e7d29dc0ca6c054a6d6e211f32dae89078594c1. It is recommended to upgrade the affected component. VDB-217650 is the identifier assigned to this vulnerability.

CVSS3: 2.6
EPSS: Низкий
github логотип

GHSA-vg5x-6q66-rvgx

около 3 лет назад

Barzahlen Payment Module PHP SDK vulnerable to Observable Timing Discrepancy

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2016-15015

A vulnerability, which was classified as problematic, was found in viafintech Barzahlen Payment Module PHP SDK up to 2.0.0. Affected is the function verify of the file src/Webhook.php. The manipulation leads to observable timing discrepancy. The complexity of an attack is rather high. The exploitability is told to be difficult. Upgrading to version 2.0.1 is able to address this issue. The patch is identified as 3e7d29dc0ca6c054a6d6e211f32dae89078594c1. It is recommended to upgrade the affected component. VDB-217650 is the identifier assigned to this vulnerability.

CVSS3: 2.6
0%
Низкий
около 3 лет назад
github логотип
GHSA-vg5x-6q66-rvgx

Barzahlen Payment Module PHP SDK vulnerable to Observable Timing Discrepancy

CVSS3: 5.3
0%
Низкий
около 3 лет назад

Уязвимостей на страницу