Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-24pm-ccpf-9wgw

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

SICK Package Analytics software up to and including version V04.0.0 are vulnerable due to incorrect default permissions settings. An unauthorized attacker could read sensitive data from the system by querying for known files using the REST API directly.

SICK Package Analytics software up to and including version V04.0.0 are vulnerable due to incorrect default permissions settings. An unauthorized attacker could read sensitive data from the system by querying for known files using the REST API directly.

EPSS

Процентиль: 43%
0.00209
Низкий

Связанные уязвимости

CVSS3: 7.5
nvd
около 5 лет назад

SICK Package Analytics software up to and including version V04.0.0 are vulnerable due to incorrect default permissions settings. An unauthorized attacker could read sensitive data from the system by querying for known files using the REST API directly.

EPSS

Процентиль: 43%
0.00209
Низкий