CVE-2014-0628
published 2014-03-25CVE-2014-0628: The server in EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.5 does not properly process certificate chains, which allows remote attackers to cause a…
PriorityP420medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
1.07%
61.1th percentile
The server in EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.5 does not properly process certificate chains, which allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| dell | bsafe_micro-edition-suite | — | — |
| dell | bsafe_micro-edition-suite | — | — |
| dell | bsafe_micro-edition-suite | — | — |
| dell | bsafe_micro-edition-suite | — | — |
| dell | bsafe_micro-edition-suite | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
RSA BSAFE Micro Edition Suite up to 4.0.4 Certificate Chain input validation (XFDB-92107 / BID-66388)
vuldb·2026-05-09·CVSS 5.0
CVE-2014-0628 [MEDIUM] RSA BSAFE Micro Edition Suite up to 4.0.4 Certificate Chain input validation (XFDB-92107 / BID-66388)
A vulnerability described as problematic has been identified in RSA BSAFE Micro Edition Suite up to 4.0.4. This affects an unknown part of the component Certificate Chain Handler. The manipulation results in improper input validation.
This vulnerability is identified as CVE-2014-0628. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is recommended.
GHSA
GHSA-3mm3-c684-p47h: The server in EMC RSA BSAFE Micro Edition Suite (MES) 4
ghsa_unreviewed·2022-05-13
CVE-2014-0628 [MEDIUM] CWE-20 GHSA-3mm3-c684-p47h: The server in EMC RSA BSAFE Micro Edition Suite (MES) 4
The server in EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.5 does not properly process certificate chains, which allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2014-03-25
Published