Lucene search

K
prionPRIOn knowledge basePRION:CVE-2016-5430
HistorySep 03, 2016 - 8:59 p.m.

Design/Logic Flaw

2016-09-0320:59:00
PRIOn knowledge base
www.prio-n.com
6

7 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

41.3%

The RSA 1.5 algorithm implementation in the JOSE_JWE class in JWE.php in jose-php before 2.2.1 lacks the Random Filling protection mechanism, which makes it easier for remote attackers to obtain cleartext data via a Million Message Attack (MMA).

CPENameOperatorVersion
jose-phplt2.2.1

7 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

41.3%

Related for PRION:CVE-2016-5430