The application was signed using a key length less than or equal to 1024 bits, making it potentially vulnerable to forged digital signatures. An attacker could forge the same digital signature of the app after maliciously modifying the app.
References
Link | Resource |
---|---|
https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0100861 | Vendor Advisory |
https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0100861 | Vendor Advisory |
Configurations
History
21 Nov 2024, 05:32
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.9 |
References | () https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0100861 - Vendor Advisory |
Information
Published : 2022-11-01 18:15
Updated : 2024-11-21 05:32
NVD link : CVE-2020-4099
Mitre link : CVE-2020-4099
CVE.ORG link : CVE-2020-4099
JSON object : View
Products Affected
hcltech
- verse
CWE
CWE-326
Inadequate Encryption Strength