jose-php project kayıtları
jose-php project üreticisine ait 2 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Saldırı profili
Tüm kayıtlar
2 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
22İzleyin | CVE-2016-5430İstismar yok | The RSA 1.5 algorithm implementation in the JOSE_JWE class in JWE.php in jose-php before 2.2.1 lacks the Random Filling protection mechanismjose-php project · jose-php · CWE-200 | Orta5,3 | — | %1,7 | 3 Eyl 2016 |
14İzleyin | CVE-2016-5429İstismar yok | jose-php before 2.2.1 does not use constant-time operations for HMAC comparison, which makes it easier for remote attackers to obtain sensitjose-php project · jose-php · CWE-200 | Düşük3,7 | — | %1,3 | 3 Eyl 2016 |
- CVE-2016-543022İzleyin
The RSA 1.5 algorithm implementation in the JOSE_JWE class in JWE.php in jose-php before 2.2.1 lacks the Random Filling protection mechanism
OrtaCVSS 5,3İstismar yokEPSS %2jose-php project · jose-php3 Eyl 2016
- CVE-2016-542914İzleyin
jose-php before 2.2.1 does not use constant-time operations for HMAC comparison, which makes it easier for remote attackers to obtain sensit
DüşükCVSS 3,7İstismar yokEPSS %1jose-php project · jose-php3 Eyl 2016