Hosts vulnerable to CVE-2024-2408

CVE-2024-2408 — severity medium, CVSS 5.9 — 1 affected host indexed by QROS Explore.

About CVE-2024-2408

The openssl_private_decrypt function in PHP, when using PKCS1 padding (OPENSSL_PKCS1_PADDING, which is the default), is vulnerable to the Marvin Attack unless it is used with an OpenSSL version that includes the changes from this pull request: https://github.com/openssl/openssl/pull/13817 (rsa_pkc

Showing 1 of 1 host, ranked by risk score.

Search all CVE-2024-2408 hosts in Explore

Open in Explore →