7.4
CVSSv3

CVE-2020-8172

Published: 08/06/2020 Updated: 12/05/2022
CVSS v2 Base Score: 5.8 | Impact Score: 4.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.4 | Impact Score: 5.2 | Exploitability Score: 2.2
VMScore: 516
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:N

Vulnerability Summary

TLS session reuse can lead to host certificate verification bypass in node version < 12.18.0 and < 14.4.0.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

nodejs node.js

oracle graalvm 19.3.2

oracle graalvm 20.1.0

oracle banking extensibility workbench 14.4.0

oracle banking extensibility workbench 14.3.0

oracle mysql cluster

oracle blockchain platform

Vendor Advisories

Debian Bug report logs - #962145 nodejs: CVE-2020-11080 CVE-2020-8172 CVE-2020-8174 (June 2020 security release) Package: src:nodejs; Maintainer for src:nodejs is Debian Javascript Maintainers &lt;pkg-javascript-devel@alioth-listsdebiannet&gt;; Reported by: Salvatore Bonaccorso &lt;carnil@debianorg&gt; Date: Wed, 3 Jun 2020 1 ...
Synopsis Important: nodejs:12 security update Type/Severity Security Advisory: Important Topic An update for the nodejs:12 module is now available for Red Hat Enterprise Linux 81 Extended Update SupportRed Hat Product Security has rated this update as having a security impact of Important A Common Vulner ...
Synopsis Important: nodejs:12 security update Type/Severity Security Advisory: Important Topic An update for the nodejs:12 module is now available for Red Hat Enterprise Linux 8Red Hat Product Security has rated this update as having a security impact of Important A Common Vulnerability Scoring System (CV ...
Synopsis Important: rh-nodejs12-nodejs security update Type/Severity Security Advisory: Important Topic An update for rh-nodejs12-nodejs is now available for Red Hat Software CollectionsRed Hat Product Security has rated this update as having a security impact of Important A Common Vulnerability Scoring S ...

ICS Advisories

Hitachi Energy MicroSCADA Pro/X SYS600
Critical Infrastructure Sectors: Energy