7.5
CVSSv3

CVE-2015-0536

Published: 20/08/2015 Updated: 14/12/2021
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x prior to 4.0.8 and 4.1.x prior to 4.1.3 and RSA BSAFE SSL-C 2.8.9 and previous versions, when client authentication and an ephemeral Diffie-Hellman ciphersuite are enabled, allow remote malicious users to cause a denial of service (daemon crash) via a ClientKeyExchange message with a length of zero, a similar issue to CVE-2015-1787.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

dell bsafe

dell bsafe ssl-c

Recent Articles

How exploit packs are concealed in a Flash object
Securelist • Vasily Davydov Anton Ivanov Dmitry Vinogradov • 22 Apr 2015

One of the most important features of a malicious attack is its ability to conceal itself from both protection solutions and victims. The main role in performing a hidden attack is played by exploits to software vulnerabilities that can be used to secretly download malicious code on the victim machine. Generally, exploits are distributed in exploit packs which appear in the form of plugin detects (to identify the type and version of software installed on the user computer) and a set of exploits,...