4.3
CVE-2013-0240
- EPSS 0.48%
- Veröffentlicht 02.04.2013 03:22:21
- Zuletzt bearbeitet 11.04.2025 00:51:21
- Quelle secalert@redhat.com
- Teams Watchlist Login
- Unerledigt Login
Gnome Online Accounts (GOA) 3.4.x, 3.6.x before 3.6.3, and 3.7.x before 3.7.5, does not properly validate SSL certificates when creating accounts such as Windows Live and Facebook accounts, which allows man-in-the-middle attackers to obtain sensitive information such as credentials by sniffing the network.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Gnome ≫ Gnome Online Accounts Version3.4.0
Gnome ≫ Gnome Online Accounts Version3.4.1
Gnome ≫ Gnome Online Accounts Version3.6.0
Gnome ≫ Gnome Online Accounts Version3.6.1
Gnome ≫ Gnome Online Accounts Version3.6.2
Gnome ≫ Gnome Online Accounts Version3.7.1
Gnome ≫ Gnome Online Accounts Version3.7.2
Gnome ≫ Gnome Online Accounts Version3.7.3
Gnome ≫ Gnome Online Accounts Version3.7.4
Canonical ≫ Ubuntu Linux Version11.10
Canonical ≫ Ubuntu Linux Version12.04 Update- Editionlts
Canonical ≫ Ubuntu Linux Version12.10
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.48% | 0.62 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:P/I:N/A:N
|