Hosts vulnerable to CVE-2024-2408
CVE-2024-2408 — severity medium, CVSS 5.9 — 1 affected host indexed by QROS Explore.
About CVE-2024-2408
The openssl_private_decrypt function in PHP, when using PKCS1 padding (OPENSSL_PKCS1_PADDING, which is the default), is vulnerable to the Marvin Attack unless it is used with an OpenSSL version that includes the changes from this pull request: https://github.com/openssl/openssl/pull/13817 (rsa_pkc
Showing 1 of 1 host, ranked by risk score.
Search all CVE-2024-2408 hosts in Explore
Open in Explore →