ZeroHour

CVE-2019-6266

CVSS 3.0
9.8 critical
EPSS
1%p66
Published
()
Modified
Description

Cordaware bestinformed Microsoft Windows client before 6.2.1.0 is affected by insecure SSL certificate verification and insecure access patterns. These issues allow remote attackers to downgrade encrypted connections to cleartext.

Vendors
cordaware
Products
bestinformed
Weakness
CWE-295
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.