Description
An issue discovered in the RunHTTPServer function in Gorush v1.18.4 allows attackers to intercept and manipulate data due to use of deprecated TLS version.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-p3pf-mff8-3h47 | Gorush uses deprecated TLS versions |
References
History
Mon, 12 Aug 2024 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:appleboy:gorush:*:*:*:*:*:go:*:* |
Wed, 07 Aug 2024 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Appleboy
Appleboy gorush |
|
| Weaknesses | CWE-327 | |
| CPEs | cpe:2.3:a:appleboy:gorush:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Appleboy
Appleboy gorush |
|
| Metrics |
cvssV3_1
|
Tue, 06 Aug 2024 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An issue discovered in the RunHTTPServer function in Gorush v1.18.4 allows attackers to intercept and manipulate data due to use of deprecated TLS version. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T14:38:53.704Z
Reserved: 2024-07-18T00:00:00.000Z
Link: CVE-2024-41270
Updated: 2024-08-07T14:38:46.300Z
Status : Analyzed
Published: 2024-08-06T21:16:03.223
Modified: 2024-08-12T18:25:28.583
Link: CVE-2024-41270
No data.
OpenCVE Enrichment
No data.
Weaknesses
Github GHSA