VDB

CVE-2024-21484

CVE-2024-21484 PUBLISHED CVSS 7.5 HIGH

Marvin Attack of RSA and RSAOAEP decryption in jsrsasign

EPSS 0.24% · 47.3th percentile

Risk Scores

CVSS 3.1
7.5
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:N/A:L/E:P
EPSS Score
0.24%
47.3th percentile

Affected Products

VendorProductVersions
n/aorg.webjars.bower:jsrsasign0, 0
jsrsasign_projectjsrsasign0, 0, 0
n/aorg.webjars.npm:jsrsasign0, 0
n/ajsrsasign0, 0
npmjsrsasign0, 0, 0
n/aorg.webjars.bowergithub.kjur:jsrsasign0, 0

Timeline

  • Jan 19, 2024 CVE Published
  • Jan 22, 2024 PoC Published
  • Jan 22, 2024 PoC Published
  • Jan 24, 2024 EPSS Score
  • Feb 16, 2024 PoC Published
  • Feb 21, 2024 EPSS Score
  • Mar 20, 2024 EPSS Score
  • Apr 16, 2024 EPSS Score
  • May 14, 2024 EPSS Score
  • Jun 11, 2024 EPSS Score
  • Jul 9, 2024 EPSS Score
  • Aug 6, 2024 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›