Vulnerability Details CVE-2019-15522
An issue was discovered in LINBIT csync2 through 2.0. csync_daemon_session in daemon.c neglects to force a failure of a hello command when the configuration requires use of SSL.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 65.9%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2019-15522
-
cpe:2.3:a:linbit:csync2:-
-
cpe:2.3:a:linbit:csync2:1.34
-
cpe:2.3:a:linbit:csync2:2.0