CVE-2020-29506

EUVD-2020-21874
Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.5.2, contain an Observable Timing Discrepancy Vulnerability.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.8 MEDIUM
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:N/A:N
dellCNA
6.8 MEDIUM
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 79%
Affected Products (NVD)
VendorProductVersion
dellbsafe_crypto-c-micro-edition
𝑥
< 4.1.5
dellbsafe_micro-edition-suite
𝑥
< 4.5.2
oracledatabase
12.1.0.2
oraclehttp_server
12.2.1.3.0
oraclehttp_server
12.2.1.4.0
oraclesecurity_service
12.2.1.3.0
oraclesecurity_service
12.2.1.4.0
oracleweblogic_server_proxy_plug-in
12.2.1.3.0
oracleweblogic_server_proxy_plug-in
12.2.1.4.0
𝑥
= Vulnerable software versions