Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-25jx-22x6-2cx2

Опубликовано: 15 нояб. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.9

Описание

The Tenda AC1200 V-W15Ev2 V15.11.0.10(1576) router is vulnerable to improper authorization / improper session management that allows the router login page to be bypassed. This leads to authenticated attackers having the ability to read the routers syslog.log file which contains the MD5 password of the Administrator's user account.

The Tenda AC1200 V-W15Ev2 V15.11.0.10(1576) router is vulnerable to improper authorization / improper session management that allows the router login page to be bypassed. This leads to authenticated attackers having the ability to read the routers syslog.log file which contains the MD5 password of the Administrator's user account.

EPSS

Процентиль: 97%
0.35939
Средний

4.9 Medium

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 4.9
nvd
почти 3 года назад

The Tenda AC1200 V-W15Ev2 V15.11.0.10(1576) router is vulnerable to improper authorization / improper session management that allows the router login page to be bypassed. This leads to authenticated attackers having the ability to read the routers syslog.log file which contains the MD5 password of the Administrator's user account.

EPSS

Процентиль: 97%
0.35939
Средний

4.9 Medium

CVSS3

Дефекты

CWE-863