CVE-2020-5684
24.12.2020, 02:15
iSM client versions from V5.1 prior to V12.1 running on NEC Storage Manager or NEC Storage Manager Express does not verify a server certificate properly, which allows a man-in-the-middle attacker to eavesdrop on an encrypted communication or alter the communication via a crafted certificate.Enginsight
Vendor | Product | Version |
---|---|---|
nec | ism_server | 5.1 ≤ 𝑥 < 12.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration