PT-2022-11624 · Whohas+1 · Whohas+1

Published

2022-12-19

·

Updated

2024-08-03

·

CVE-2021-4258

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions whohas (affected versions not specified)
Description A vulnerability was found in the component Package Information Handler of whohas, which leads to cleartext transmission of sensitive information. The attack may be initiated remotely. The real existence of this vulnerability is still doubted at the moment. Most sources redirect to the encrypted site, which limits the possibilities of an attack.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Cleartext Transmission of Sensitive Information

Weakness Enumeration

Related Identifiers

CVE-2021-4258

Affected Products

Debian
Whohas