It was discovered that phpseclib did not perform padding validation in constant time when using AES in CBC mode. A remote attacker could possibly use this issue to conduct a padding oracle timing attack and obtain sensitive information. Weiterlesen
Intelligence View
⚡ tsecurity.de Intelligence
USN-8769-1: phpseclib vulnerability
Reagiere als Erste:r — dein Feedback zählt!
SOCIAL SHARE CARD GENERATOR