Lucene search

K
prionPRIOn knowledge basePRION:CVE-2016-5429
HistorySep 03, 2016 - 8:59 p.m.

Information disclosure

2016-09-0320:59:00
PRIOn knowledge base
www.prio-n.com
2

6.6 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

59.5%

jose-php before 2.2.1 does not use constant-time operations for HMAC comparison, which makes it easier for remote attackers to obtain sensitive information via a timing attack, related to JWE.php and JWS.php.

CPENameOperatorVersion
jose-phple2.2.0

6.6 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

59.5%

Related for PRION:CVE-2016-5429