tinfoilsecurity kayıtları
tinfoilsecurity üreticisine ait 3 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Saldırı profili
Tüm kayıtlar
3 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
24İzleyin | CVE-2024-8796İstismar yok | Insufficient Default OTP Shared Secret Lengthtinfoilsecurity · devise-two-factor · CWE-331 | Orta6,0 | — | %0,6 | 17 Eyl 2024 |
22İzleyin | CVE-2015-7225İstismar yok | Tinfoil Devise-two-factor before 2.0.0 does not strictly follow section 5.2 of RFC 6238 and does not "burn" a successfully validated one-timtinfoilsecurity · devise-two-factor · CWE-254 | Orta5,3 | — | %2,1 | 6 Eyl 2017 |
21İzleyin | CVE-2021-43177İstismar yok | As a result of an incomplete fix for CVE-2015-7225, in versions of devise-two-factor prior to 4.0.2 it is possible to reuse a One-Time-Passwtinfoilsecurity · devise-two-factor · CWE-254 | Orta5,3 | — | %0,9 | 11 Nis 2022 |
- CVE-2024-879624İzleyin
Insufficient Default OTP Shared Secret Length
OrtaCVSS 6,0İstismar yokEPSS %1tinfoilsecurity · devise-two-factor17 Eyl 2024
- CVE-2015-722522İzleyin
Tinfoil Devise-two-factor before 2.0.0 does not strictly follow section 5.2 of RFC 6238 and does not "burn" a successfully validated one-tim
OrtaCVSS 5,3İstismar yokEPSS %2tinfoilsecurity · devise-two-factor6 Eyl 2017
- CVE-2021-4317721İzleyin
As a result of an incomplete fix for CVE-2015-7225, in versions of devise-two-factor prior to 4.0.2 it is possible to reuse a One-Time-Passw
OrtaCVSS 5,3İstismar yokEPSS %1tinfoilsecurity · devise-two-factor11 Nis 2022