7.5
CVE-2013-0264
- EPSS 0.14%
- Veröffentlicht 30.12.2019 22:15:11
- Zuletzt bearbeitet 21.11.2024 01:47:11
- Quelle secalert@redhat.com
- CVE-Watchlists
- Unerledigt
An import error was introduced in Cumin in the code refactoring in r5310. Server certificate validation is always disabled when connecting to Aviary servers, even if the installed packages on a system support it.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Redhat ≫ Mrg Management Console Versionr5310
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.14% | 0.359 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:N/I:P/A:N
|
CWE-295 Improper Certificate Validation
The product does not validate, or incorrectly validates, a certificate.