AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2008-2235

MEDIUM · CVSS 4.9 EPSS 0.39%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2008-08-01 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2008-2235
Severity
MEDIUM
CVSS
4.9
EPSS
0.39%

Original Filing — NVD Description

OpenSC before 0.11.5 uses weak permissions (ADMIN file control information of 00) for the 5015 directory on smart cards and USB crypto tokens running Siemens CardOS M4, which allows physically proximate attackers to change the PIN.