脆弱性情報
高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。
脆弱性タイトル
DSA-2019-001: Dell Networking OS10 Improper Certificate Validation Vulnerability
脆弱性説明
Dell Networking OS10 versions prior to 10.4.3.0 contain a vulnerability in the Phone Home feature which does not properly validate the server's certificate authority during TLS handshake. Use of an invalid or malicious certificate could potentially allow an attacker to spoof a trusted entity by using a man-in-the-middle (MITM) attack.
CVSS情報
N/A
脆弱性タイプ
N/A
脆弱性タイトル
Dell Networking OS10 信任管理问题漏洞
脆弱性説明
Dell Networking OS10是美国戴尔(Dell)公司开发的一套基于Linux的网络交换机操作系统。 Dell Networking OS10 10.4.3.0之前版本中的Phone Home功能存在安全漏洞,该漏洞源于在TLS握手过程中,程序错误地验证了服务器证书。攻击者可借助无效或恶意的证书通过实施中间人攻击利用该漏洞冒充可信的实体。
CVSS情報
N/A
脆弱性タイプ
N/A