Vulnerability Details CVE-2014-0636
EMC RSA BSAFE Micro Edition Suite (MES) 3.2.x before 3.2.6 and 4.0.x before 4.0.5 does not properly validate X.509 certificate chains, which allows man-in-the-middle attackers to spoof SSL servers via a crafted certificate chain.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 34.3%
CVSS Severity
CVSS v2 Score 5.8
Products affected by CVE-2014-0636
-
cpe:2.3:a:dell:bsafe_micro-edition-suite:3.2.0
-
cpe:2.3:a:dell:bsafe_micro-edition-suite:3.2.1
-
cpe:2.3:a:dell:bsafe_micro-edition-suite:3.2.2
-
cpe:2.3:a:dell:bsafe_micro-edition-suite:3.2.3
-
cpe:2.3:a:dell:bsafe_micro-edition-suite:3.2.4
-
cpe:2.3:a:dell:bsafe_micro-edition-suite:3.2.5
-
cpe:2.3:a:dell:bsafe_micro-edition-suite:4.0.0
-
cpe:2.3:a:dell:bsafe_micro-edition-suite:4.0.1
-
cpe:2.3:a:dell:bsafe_micro-edition-suite:4.0.2
-
cpe:2.3:a:dell:bsafe_micro-edition-suite:4.0.3
-
cpe:2.3:a:dell:bsafe_micro-edition-suite:4.0.4