CVE-2023-5594

Improper validation of the servers certificate chain in secure traffic scanning feature considered intermediate certificate signed using the MD5 or SHA1 algorithm as trusted.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 HIGH
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:L/A:N
ESETCNA
7.5 HIGH
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:L/A:N
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 29%
VendorProductVersion
esetendpoint_antivirus
10.0 ≤
esetendpoint_antivirus
-
esetendpoint_security
-
esetfile_security
-
esetinternet_security
-
esetmail_security
-
esetmail_security
-
esetnod32_antivirus
-
esetsecurity
-
esetsecurity
-
esetserver_security
10.1 ≤
esetserver_security
-
esetsmart_security
-
𝑥
= Vulnerable software versions