4.3
CVSSv3

CVE-2019-16752

Published: 04/12/2019 Updated: 15/01/2020
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

An issue exists in Decentralized Anonymous Payment System (DAPS) through 2019-08-26. It is possible to force wallets to send HTTP requests to arbitrary locations, both on the local network and on the internet. This is a serious threat to user privacy, since it can possibly leak their IP address and the fact that they are using the product. This also affects Dash Core up to and including 0.14.0.3 and Private Instant Verified Transactions (PIVX) up to and including 3.4.0.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

dash dash core

officialdapscoin decentralized anonymous payment system

pivx private instant verified transactions