Логотип exploitDog
bind:CVE-2020-13101
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-13101

Количество 2

Количество 2

nvd логотип

CVE-2020-13101

больше 5 лет назад

In OASIS Digital Signature Services (DSS) 1.0, an attacker can control the validation outcome (i.e., trigger either a valid or invalid outcome for a valid or invalid signature) via a crafted XML signature, when the InlineXML option is used. This defeats the expectation of non-repudiation.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-9gff-jcrq-h3hw

больше 3 лет назад

In OASIS Digital Signature Services (DSS) 1.0, an attacker can control the validation outcome (i.e., trigger either a valid or invalid outcome for a valid or invalid signature) via a crafted XML signature, when the InlineXML option is used. This defeats the expectation of non-repudiation.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-13101

In OASIS Digital Signature Services (DSS) 1.0, an attacker can control the validation outcome (i.e., trigger either a valid or invalid outcome for a valid or invalid signature) via a crafted XML signature, when the InlineXML option is used. This defeats the expectation of non-repudiation.

CVSS3: 7.5
0%
Низкий
больше 5 лет назад
github логотип
GHSA-9gff-jcrq-h3hw

In OASIS Digital Signature Services (DSS) 1.0, an attacker can control the validation outcome (i.e., trigger either a valid or invalid outcome for a valid or invalid signature) via a crafted XML signature, when the InlineXML option is used. This defeats the expectation of non-repudiation.

CVSS3: 7.5
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу