CVE-2019-3730
- EPSS 0.11%
- Published 30.09.2019 22:15:10
- Last modified 21.11.2024 04:42:25
RSA BSAFE Micro Edition Suite versions prior to 4.1.6.3 (in 4.1.x) and prior to 4.4 (in 4.2.x and 4.3.x), are vulnerable to an Information Exposure Through an Error Message vulnerability, also known as a “padding oracle attack vulnerability”. A malic...
CVE-2019-3729
- EPSS 0.12%
- Published 30.09.2019 22:15:10
- Last modified 21.11.2024 04:42:25
RSA BSAFE Micro Edition Suite versions prior to 4.4 (in 4.0.x, 4.1.x, 4.2.x and 4.3.x) are vulnerable to a Heap-based Buffer Overflow vulnerability when parsing ECDSA signature. A malicious user with adjacent network access could potentially exploit ...
CVE-2019-3728
- EPSS 0.6%
- Published 30.09.2019 22:15:10
- Last modified 22.05.2025 16:19:15
RSA BSAFE Crypto-C Micro Edition versions from 4.0.0.0 before 4.0.5.4 and from 4.1.0 before 4.1.4, RSA BSAFE Micro Edition Suite versions from 4.0.0 before 4.0.13 and from 4.1.0 before 4.4 and RSA Crypto-C versions from 6.0.0 through 6.4.* are vulner...
CVE-2016-0887
- EPSS 0.94%
- Published 12.04.2016 23:59:31
- Last modified 12.04.2025 10:46:40
EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x and 4.1.x before 4.1.5, RSA BSAFE Crypto-C Micro Edition (CCME) 4.0.x and 4.1.x before 4.1.3, RSA BSAFE Crypto-J before 6.2.1, RSA BSAFE SSL-J before 6.2.1, and RSA BSAFE SSL-C before 2.8.9 allow remote a...
CVE-2014-4630
- EPSS 0.19%
- Published 30.12.2014 15:59:00
- Last modified 12.04.2025 10:46:40
EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.6 and RSA BSAFE SSL-J before 6.1.4 do not ensure that a server's X.509 certificate is the same during renegotiation as it was before renegotiation, which allows man-in-the-middle attackers to o...
CVE-2014-0636
- EPSS 0.13%
- Published 11.04.2014 19:55:04
- Last modified 12.04.2025 10:46:40
EMC RSA BSAFE Micro Edition Suite (MES) 3.2.x before 3.2.6 and 4.0.x before 4.0.5 does not properly validate X.509 certificate chains, which allows man-in-the-middle attackers to spoof SSL servers via a crafted certificate chain.
- EPSS 0.26%
- Published 25.03.2014 13:25:38
- Last modified 12.04.2025 10:46:40
The server in EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.5 does not properly process certificate chains, which allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors.