Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2jf7-8fr3-3q7f

Опубликовано: 01 окт. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.8
CVSS3: 7.5

Описание

E3 Site Supervisor Control (firmware version < 2.31F01) has a floor plan feature that allows for an unauthenticated attacker to upload floor plan files. By uploading a specially crafted floor plan file, an attacker can access any file from the E3 file system.

E3 Site Supervisor Control (firmware version < 2.31F01) has a floor plan feature that allows for an unauthenticated attacker to upload floor plan files. By uploading a specially crafted floor plan file, an attacker can access any file from the E3 file system.

EPSS

Процентиль: 34%
0.00136
Низкий

8.8 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 7.5
nvd
5 месяцев назад

E3 Site Supervisor Control (firmware version < 2.31F01) has a floor plan feature that allows for an unauthenticated attacker to upload floor plan files. By uploading a specially crafted floor plan file, an attacker can access any file from the E3 file system.

EPSS

Процентиль: 34%
0.00136
Низкий

8.8 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-20