Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-23cq-j64v-p9x8

Опубликовано: 02 мар. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

In Microsoft Exchange through 2019, Exchange ActiveSync (EAS) configurations on on-premises servers may transmit sensitive data from Samsung mobile devices in cleartext, including the user's name, e-mail address, device ID, bearer token, and base64-encoded password.

In Microsoft Exchange through 2019, Exchange ActiveSync (EAS) configurations on on-premises servers may transmit sensitive data from Samsung mobile devices in cleartext, including the user's name, e-mail address, device ID, bearer token, and base64-encoded password.

EPSS

Процентиль: 4%
0.00017
Низкий

7.5 High

CVSS3

Дефекты

CWE-319

Связанные уязвимости

CVSS3: 7.5
nvd
24 дня назад

In Microsoft Exchange through 2019, Exchange ActiveSync (EAS) configurations on on-premises servers may transmit sensitive data from Samsung mobile devices in cleartext, including the user's name, e-mail address, device ID, bearer token, and base64-encoded password.

EPSS

Процентиль: 4%
0.00017
Низкий

7.5 High

CVSS3

Дефекты

CWE-319