Klapp App JSON Web Token ଦୁର୍ବଳ ପ୍ରାମାଣିକରଣ

Rakkoon nageenyaa kan ସମସ୍ୟାଜନକ jedhamuun beekamu Klapp App keessatti argameera. Miidhamni argame is hojii hin beekamne kutaa JSON Web Token Handler keessa. Wanti jijjiirame gara ଦୁର୍ବଳ ପ୍ରାମାଣିକରଣ geessa. Rakkoo ibsuuf CWE yoo fayyadamte gara CWE-287 si geessa. Dogoggorri 08/18/2020 irratti mul’ate. Odeeffannoon kun yeroo 09/07/2020 maxxanfameera kan maxxansiise Sven Fassbender waliin modzero AG akka Knapp daneben ist auch vorbei akka ପରାମର୍ଶଦାତା (ୱେବସାଇଟ୍). Odeeffannoon kun buufachuuf modzero.com irratti argama. Beeksisni uummataaf gad-lakkifamuu gurgurtaa waliin mari'atee qindaa'ee jira. Dogoggorri kun CVE-2020-36533 jedhamee waamama. Weerara fageenya irraa jalqabuu ni danda'ama. Ibsa teeknikaa hin jiru. Meeshaa balaa kana fayyadamuuf hin jirre. Ammas, gatii exploit might be approx. USD $0-$5k yeroo ammaa irratti argamuu danda'a. ଅପରିଭାଷିତ ta’uu isaa ibsameera. Hanqinni kun guyyoota 20 caalaa akka zero-day kan ummataaf hin ifneetti fayyadamee ture. Akka 0-daytti, gatiin isaa daldala dhoksaa keessatti $0-$5k akka ta'e tilmaamameera. If you want to get the best quality for vulnerability data then you always have to consider VulDB.

3 ଆଡାପ୍ଟେସନ୍ · 50 ପଏଣ୍ଟ

ଫିଲ୍ଡସୃଷ୍ଟି ହୋଇଛି
09/07/2020 01:09 PM
ଅଦ୍ୟତନ 1/2
09/07/2020 01:36 PM
ଅଦ୍ୟତନ 2/2
06/03/2022 08:36 PM
software_vendorKlappKlappKlapp
software_nameAppAppApp
software_componentJSON Web Token HandlerJSON Web Token HandlerJSON Web Token Handler
vulnerability_discoverydate1597708800 (08/18/2020)1597708800 (08/18/2020)1597708800 (08/18/2020)
vulnerability_vendorinformdate1597795200 (08/19/2020)1597795200 (08/19/2020)1597795200 (08/19/2020)
vulnerability_risk111
vulnerability_historic000
cvss2_vuldb_basescore2.62.62.6
cvss2_vuldb_tempscore2.62.62.6
cvss2_vuldb_avNNN
cvss2_vuldb_acHHH
cvss2_vuldb_auNNN
cvss2_vuldb_ciPPP
cvss2_vuldb_iiNNN
cvss2_vuldb_aiNNN
cvss3_meta_basescore3.73.73.7
cvss3_meta_tempscore3.73.73.7
cvss3_vuldb_basescore3.73.73.7
cvss3_vuldb_tempscore3.73.73.7
cvss3_vuldb_avNNN
cvss3_vuldb_acHHH
cvss3_vuldb_prNNN
cvss3_vuldb_uiNNN
cvss3_vuldb_sUUU
cvss3_vuldb_cLLL
cvss3_vuldb_iNNN
cvss3_vuldb_aNNN
advisory_date1599436800 (09/07/2020)1599436800 (09/07/2020)1599436800 (09/07/2020)
advisory_locationWebsiteWebsiteWebsite
advisory_typeAdvisoryAdvisoryAdvisory
advisory_urlhttps://www.modzero.com/modlog/archives/2020/09/07/knapp_daneben_ist_auch_vorbei/index.htmlhttps://www.modzero.com/modlog/archives/2020/09/07/knapp_daneben_ist_auch_vorbei/index.htmlhttps://www.modzero.com/modlog/archives/2020/09/07/knapp_daneben_ist_auch_vorbei/index.html
advisory_identifierKnapp daneben ist auch vorbeiKnapp daneben ist auch vorbeiKnapp daneben ist auch vorbei
advisory_coordination111
person_nameSven FassbenderSven FassbenderSven Fassbender
company_namemodzero AGmodzero AGmodzero AG
advisory_reaction_date1597968000 (08/21/2020)1597968000 (08/21/2020)1597968000 (08/21/2020)
advisory_disputed000
price_0day$0-$5k$0-$5k$0-$5k
source_seealso160762160762160762
cvss2_vuldb_eNDNDND
cvss2_vuldb_rlUUU
cvss2_vuldb_rcCCC
cvss3_vuldb_eXXX
cvss3_vuldb_rlUUU
cvss3_vuldb_rcCCC
0day_days202020
advisory_falsepositive00
vulnerability_cweCWE-287 (ଦୁର୍ବଳ ପ୍ରାମାଣିକରଣ)CWE-287 (ଦୁର୍ବଳ ପ୍ରାମାଣିକରଣ)
source_cveCVE-2020-36533
cna_responsibleVulDB

Want to stay up to date on a daily basis?

Enable the mail alert feature now!