Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1110 CNY

100%

CVE-2021-43570

EPSS 0.22% · P45
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2021-43570

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The verify function in the Stark Bank Java ECDSA library (ecdsa-java) 1.0.0 fails to check that the signature is non-zero, which allows attackers to forge signatures on arbitrary messages.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Stark Bank 数据伪造问题漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Stark Bank是巴西个人开发者的一个银行 API。通过 API 执行所有银行业务,简化和自动化支付、促进对账和扩展业务。 Stark Bank Ecdsa-java 中存在数据伪造问题漏洞,该漏洞源于产品的verify函数未能检查签名是否为非零。攻击者可通过该漏洞在任意消息上伪造签名。以下产品及版本受到影响:Stark Bank Ecdsa-java 1.0.0 版本。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2021-43570

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2021-43570

登录查看更多情报信息。

Other References for CVE-2021-43570 (2)

Same Patch Batch · n/a · 2021-11-09 · 42 CVEs total

CVE-2021-43192JetBrains YouTrack 安全漏洞
CVE-2021-43197Jetbrains JetBrains TeamCity 跨站脚本漏洞
CVE-2021-43199Jetbrains JetBrains TeamCity 安全漏洞
CVE-2021-43198Jetbrains JetBrains TeamCity 跨站脚本漏洞
CVE-2021-43200Jetbrains JetBrains TeamCity 安全漏洞
CVE-2021-43201Jetbrains JetBrains TeamCity 安全漏洞
CVE-2021-43187JetBrains YouTrack 安全漏洞
CVE-2021-43188JetBrains YouTrack 安全漏洞
CVE-2021-43189JetBrains YouTrack 安全漏洞
CVE-2019-16240HP Inkjet printers 安全漏洞
CVE-2021-43190JetBrains YouTrack 安全漏洞
CVE-2021-43195Jetbrains JetBrains TeamCity 安全漏洞
CVE-2021-43191JetBrains YouTrack 安全漏洞
CVE-2021-43184JetBrains YouTrack 跨站脚本漏洞
CVE-2021-43185JetBrains YouTrack 注入漏洞
CVE-2021-43186JetBrains YouTrack 跨站脚本漏洞
CVE-2019-18914多款HP产品跨站脚本漏洞
CVE-2019-18916多款HP产品安全漏洞
CVE-2021-43519Lua 缓冲区错误漏洞
CVE-2021-43114FORT-validator 安全漏洞

Showing top 20 of 42 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2021-43570

No comments yet


Leave a comment