Skip to main content

Vendor/product archive

netapp / max_data CVEs

Beta · best-effort

5 CVEs tagged to netapp / max_data3 Critical, 2 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2020-14968

Published Jun 22, 2020

An issue was discovered in the jsrsasign package before 8.0.17 for Node.js. Its RSASSA-PSS (RSA-PSS) implementation does not detect signature manipulation/modification by prependi…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-14967

Published Jun 22, 2020

An issue was discovered in the jsrsasign package before 8.0.18 for Node.js. Its RSA PKCS1 v1.5 decryption implementation does not detect ciphertext modification by prepending '\0'…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-14966

Published Jun 22, 2020

An issue was discovered in the jsrsasign package through 8.0.18 for Node.js. It allows a malleability in ECDSA signatures by not checking overflows in the length of a sequence and…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1