7.5
CVSSv3

CVE-2020-25459

Published: 16/06/2022 Updated: 28/06/2022
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

An issue exists in function sync_tree in hetero_decision_tree_guest.py in WeBank FATE (Federated AI Technology Enabler) 0.1 up to and including 1.4.2 allows malicious users to read sensitive information during the training process of machine learning joint modeling.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

webank federated ai technology enabler