5.8
CVSSv2

CVE-2020-1887

Published: 13/03/2020 Updated: 03/04/2020
CVSS v2 Base Score: 5.8 | Impact Score: 4.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 9.1 | Impact Score: 5.2 | Exploitability Score: 3.9
VMScore: 516
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:N

Vulnerability Summary

Incorrect validation of the TLS SNI hostname in osquery versions after 2.9.0 and prior to 4.2.0 could allow an malicious user to MITM osquery traffic in the absence of a configured root chain of trust.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

linuxfoundation osquery