CVE-2023-37306EPSS p42.0%

CVE-2023-37306CVE-2023-37306

misp-project / misp

Description

MISP 2.4.172 mishandles different certificate file extensions in server sync. An attacker can obtain sensitive information because of the nature of the error messages.

Scoring

CVSS 7.5 ()
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS0.53% probability of exploitation · percentile 42.0% · 2026-08-08T12:02:54Z
Last modified2026-06-23
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.