MEDIUM
iSM client versions from V5.1 prior to V12.1 running on NEC Storage Manager or NEC Storage Manager Express does not verify a server certificate properly, which allows a man-in-the-middle attacker to eavesdrop on an encrypted communication or alter the communication via a crafted certificate
Published Dec 24, 2020
4.8
MEDIUMCVSS 3.1
EPSS 0.34%
Description
Affected products
Remediation
References (2)
Change history (0)
No recorded changes yet.