CVE-2020-35169
published 2022-07-11CVE-2020-35169: Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.5.2, contain an Improper Input Validation…
PriorityP347critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
1.04%
60.1th percentile
Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.5.2, contain an Improper Input Validation Vulnerability.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| dell | bsafe_crypto-c-micro-edition | < 4.1.5 | 4.1.5 |
| dell | bsafe_micro-edition-suite | < 4.5.2 | 4.5.2 |
| dell | dell_bsafe_crypto-c_micro_edition | >= unspecified < 4.1.5 and 4.6 | 4.1.5 and 4.6 |
| oracle | database | — | — |
| oracle | database | — | — |
| oracle | database | — | — |
| oracle | http_server | — | — |
| oracle | http_server | — | — |
| oracle | security_service | — | — |
| oracle | security_service | — | — |
| oracle | weblogic_server_proxy_plug-in | — | — |
| oracle | weblogic_server_proxy_plug-in | — | — |
CVSS provenance
nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
vendor_oracle9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-8mpx-xp94-jvfq: Dell BSAFE Crypto-C Micro Edition, versions before 4
ghsa_unreviewed·2022-07-12
CVE-2020-35169 [CRITICAL] CWE-20 GHSA-8mpx-xp94-jvfq: Dell BSAFE Crypto-C Micro Edition, versions before 4
Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite,
versions before 4.5.2, contain an Improper Input Validation Vulnerability.
Oracle
Oracle Oracle Communications Applications Risk Matrix: BRM Server (BSAFE Crypto-c) — CVE-2020-35169
vendor_oracle·2023-07-15·CVSS 9.1
CVE-2020-35169 [CRITICAL] Oracle Oracle Communications Applications Risk Matrix: BRM Server (BSAFE Crypto-c) — CVE-2020-35169
Oracle Oracle Communications Applications Risk Matrix: BRM Server (BSAFE Crypto-c) vulnerability
CVE: CVE-2020-35169
CVSS: 9.1
Protocol: XMPP
Remote exploit: Yes
Affected versions: Network
Advisory: cpujul2023 (JUL 2023)
Oracle
Oracle Oracle Blockchain Platform Risk Matrix: BCS Console (Dell BSAFE Micro Edition Suite) — CVE-2020-35169
vendor_oracle·2023-04-15·CVSS 7.4
CVE-2020-35169 [CRITICAL] Oracle Oracle Blockchain Platform Risk Matrix: BCS Console (Dell BSAFE Micro Edition Suite) — CVE-2020-35169
Oracle Oracle Blockchain Platform Risk Matrix: BCS Console (Dell BSAFE Micro Edition Suite) vulnerability
CVE: CVE-2020-35169
CVSS: 7.4
Protocol: Oracle Net
Remote exploit: Yes
Affected versions: Network
Advisory: cpuapr2023 (APR 2023)
Oracle
Oracle Oracle GoldenGate Risk Matrix: Oracle GoldenGate Microservices (Dell BSAFE Micro Edition Suite) — CVE-2020-35169
vendor_oracle·2022-10-15·CVSS 9.8
CVE-2020-35169 [CRITICAL] Oracle Oracle GoldenGate Risk Matrix: Oracle GoldenGate Microservices (Dell BSAFE Micro Edition Suite) — CVE-2020-35169
Oracle Oracle GoldenGate Risk Matrix: Oracle GoldenGate Microservices (Dell BSAFE Micro Edition Suite) vulnerability
CVE: CVE-2020-35169
CVSS: 9.8
Protocol: HTTPS
Remote exploit: Yes
Affected versions: Network
Advisory: cpuoct2022 (OCT 2022)
Oracle
Oracle Oracle Database Server Risk Matrix: Oracle Database - Enterprise Edition — CVE-2020-35169
vendor_oracle·2022-07-15·CVSS 9.1
CVE-2020-35169 [CRITICAL] Oracle Oracle Database Server Risk Matrix: Oracle Database - Enterprise Edition — CVE-2020-35169
Oracle Oracle Database Server Risk Matrix: Oracle Database - Enterprise Edition vulnerability
CVE: CVE-2020-35169
CVSS: 9.1
Protocol: TCPS
Remote exploit: Yes
Affected versions: Network
Advisory: cpujul2022 (JUL 2022)
No detection rules found.
No public exploits indexed.
https://www.dell.com/support/kbdoc/en-us/000181115/dsa-2020-286-dell-bsafe-crypto-c-micro-edition-4-1-5-and-dell-bsafe-micro-edition-suite-4-6-multiple-security-vulnerabilitieshttps://www.oracle.com/security-alerts/cpujul2022.htmlhttps://www.dell.com/support/kbdoc/en-us/000181115/dsa-2020-286-dell-bsafe-crypto-c-micro-edition-4-1-5-and-dell-bsafe-micro-edition-suite-4-6-multiple-security-vulnerabilitieshttps://www.oracle.com/security-alerts/cpujul2022.html
2022-07-11
Published