CVE-2019-18848 - CERT CVE
ID CVE-2019-18848
Sažetak The json-jwt gem before 1.11.0 for Ruby lacks an element count during the splitting of a JWE string.
Reference
CVSS
Base: 5.0
Impact: 2.9
Exploitability:10.0
Pristup
VektorSloženostAutentikacija
NETWORK LOW NONE
Impact
PovjerljivostCjelovitostDostupnost
NONE PARTIAL NONE
CVSS vektor AV:N/AC:L/Au:N/C:N/I:P/A:N
Zadnje važnije ažuriranje 03-05-2022 - 14:28
Objavljeno 12-11-2019 - 15:15