SSH host keys generation vulnerability in the server in McAfee Threat Intelligence Exchange Server (TIE Server) 1.3.0, 2.0.x, 2.1.x, 2.2.0 allows man-in-the-middle attackers to spoof servers via acquiring keys from another environment.
2018-10-03T22:01:04.110
2024-11-21T04:11:06.960
Modified
CVSSv3.1: 5.9 (MEDIUM)
AV:N/AC:M/Au:N/C:N/I:P/A:N
8.6
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | mcafee | threat_intelligence_exchange_server | ≤ 2.0.1 | Yes |
Application | mcafee | threat_intelligence_exchange_server | ≤ 2.1.1 | Yes |
Application | mcafee | threat_intelligence_exchange_server | 1.3.0 | Yes |
Application | mcafee | threat_intelligence_exchange_server | 2.2.0 | Yes |