RSS   Vulnerabilities for 'Clearpath mcp'   RSS

2020-01-07
 
CVE-2019-18386

NVD-CWE-noinfo
 

 
Systems management on Unisys ClearPath Forward Libra and ClearPath MCP Software Series can fault and have other unspecified impact when receiving specifically crafted message payloads over a systems management communication channel

 
2018-02-26
 
CVE-2018-5762

CWE-noinfo
 

 
The TLS implementation in the TCP/IP networking module in Unisys ClearPath MCP systems with TCP-IP-SW 58.1 before 58.160, 59.1 before 059.1a.17 (IC #17), and 60.0 before 60.044 might allow remote attackers to decrypt TLS ciphertext data by leveraging a Bleichenbacher RSA padding oracle, aka a ROBOT attack.

 
2017-03-09
 
CVE-2017-5872

 

 
The TCP/IP networking module in Unisys ClearPath MCP systems with TCP-IP-SW 57.1 before 57.152, 58.1 before 58.142, or 59.1 before 59.172, when running a TLS 1.2 service, allows remote attackers to cause a denial of service (network connectivity disruption) via a client hello with a signature_algorithms extension above those defined in RFC 5246, which triggers a full memory dump.

 
2002-12-31
 
CVE-2002-2179

 

 
The dynamic initialization feature of the ClearPath MCP environment allows remote attackers to cause a denial of service (crash) via a TCP port scan using a tool such as nmap.

 

 >>> Vendor: Unisys 8 Products
Clearpath mcp
Business information server
Mcp-firmware
Secure partitioning
Mobigate
Stealth svg
Stealth
Algol compiler


Copyright 2021, cxsecurity.com

 

Back to Top