Vulnerabilities > NEC > ISM Server

DATE CVE VULNERABILITY TITLE RISK
2020-12-24 CVE-2020-5684 Improper Certificate Validation vulnerability in NEC ISM Server 5.1
iSM client versions from V5.1 prior to V12.1 running on NEC Storage Manager or NEC Storage Manager Express does not verify a server certificate properly, which allows a man-in-the-middle attacker to eavesdrop on an encrypted communication or alter the communication via a crafted certificate.
network
high complexity
nec CWE-295
4.8