Skip to main content

Vendor/product archive

dell / bsafe_ssl-j CVEs

Beta · best-effort

18 CVEs tagged to dell / bsafe_ssl-j1 Critical, 2 High, 15 Medium, 0 Low, 0 Unrated.

CVE-2024-29172

Published Feb 12, 2025

Dell BSAFE SSL-J, versions prior to 6.6 and versions 7.0 through 7.2, contains a deadlock vulnerability. A remote attacker could potentially exploit this vulnerability, leading to…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-29171

Published Feb 12, 2025

Dell BSAFE SSL-J, versions prior to 6.6 and versions 7.0 through 7.2, contains an Improper certificate verification vulnerability. A remote attacker could potentially exploit this…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-28077

Published Feb 10, 2024

Dell BSAFE SSL-J, versions prior to 6.5, and versions 7.0 and 7.1 contain a debug message revealing unnecessary information vulnerability. This may lead to disclosing sensitive in…

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-34381

Published Feb 2, 2024

Dell BSAFE SSL-J version 7.0 and all versions prior to 6.5, and Dell BSAFE Crypto-J versions prior to 6.2.6.1 contain an unmaintained third-party component vulnerability. An unaut…

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort

CVE-2022-34364

Published Feb 10, 2023

Dell BSAFE SSL-J, versions before 6.5 and version 7.0 contain a debug message revealing unnecessary information vulnerability. This may lead to disclosing sensitive information to…

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-24409

Published Feb 23, 2022

Dell BSAFE SSL-J contains remediation for a covert timing channel vulnerability that may be exploited by malicious users to compromise the affected system. Only customers with act…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-11069

Published Sep 11, 2018

RSA BSAFE SSL-J versions prior to 6.2.4 contain a Covert Timing Channel vulnerability during RSA decryption, also known as a Bleichenbacher attack on RSA decryption. A remote atta…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-11068

Published Sep 11, 2018

RSA BSAFE SSL-J versions prior to 6.2.4 contain a Heap Inspection vulnerability that could allow an attacker with physical access to the system to recover sensitive key material.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-0627

Published Feb 18, 2014

The SSLEngine API implementation in EMC RSA BSAFE SSL-J 5.x before 5.1.3 and 6.x before 6.0.2 allows remote attackers to trigger the selection of a weak cipher suite by using the…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-0626

Published Feb 18, 2014

The (1) JSAFE and (2) JSSE APIs in EMC RSA BSAFE SSL-J 5.x before 5.1.3 and 6.x before 6.0.2 make it easier for remote attackers to bypass intended cryptographic protection mechan…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-0625

Published Feb 18, 2014

The SSLSocket implementation in the (1) JSAFE and (2) JSSE APIs in EMC RSA BSAFE SSL-J 5.x before 5.1.3 and 6.x before 6.0.2 allows remote attackers to cause a denial of service (…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-1105

Published Sep 12, 2001

RSA BSAFE SSL-J 3.0, 3.0.1 and 3.1, as used in Cisco iCND 2.0, caches session IDs from failed login attempts, which could allow remote attackers to bypass SSL client authenticatio…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-18 of 18 CVEsPage 1 of 1