Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2h79-f8wh-7h2v

Опубликовано: 25 сент. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.7
CVSS3: 7.5

Описание

All versions of Dingtian DT-R002 are vulnerable to an Insufficiently Protected Credentials vulnerability that could allow an attacker to extract the proprietary "Dingtian Binary" protocol password by sending an unauthenticated GET request.

All versions of Dingtian DT-R002 are vulnerable to an Insufficiently Protected Credentials vulnerability that could allow an attacker to extract the proprietary "Dingtian Binary" protocol password by sending an unauthenticated GET request.

EPSS

Процентиль: 22%
0.00296
Низкий

8.7 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-522

Связанные уязвимости

CVSS3: 7.5
nvd
10 месяцев назад

All versions of Dingtian DT-R002 are vulnerable to an Insufficiently Protected Credentials vulnerability that could allow an attacker to extract the proprietary "Dingtian Binary" protocol password by sending an unauthenticated GET request.

CVSS3: 7.5
fstec
10 месяцев назад

Уязвимость микропрограммного обеспечения релейных плат Dingtian DT-R002, связанная с недостаточной защитой регистрационных данных, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 22%
0.00296
Низкий

8.7 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-522