Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2m76-j3f4-m2c2

Опубликовано: 27 нояб. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 9.2

Описание

The Access Control Bypass vulnerability found in ALC WebCTRL and Carrier i-Vu in versions up to and including 8.5 allows a malicious actor to bypass intended access restrictions and expose sensitive information via the

web based building automation server.

The Access Control Bypass vulnerability found in ALC WebCTRL and Carrier i-Vu in versions up to and including 8.5 allows a malicious actor to bypass intended access restrictions and expose sensitive information via the

web based building automation server.

EPSS

Процентиль: 19%
0.00061
Низкий

9.2 Critical

CVSS4

Дефекты

CWE-863

Связанные уязвимости

nvd
2 месяца назад

The Access Control Bypass vulnerability found in ALC WebCTRL and Carrier i-Vu in versions up to and including 8.5 allows a malicious actor to bypass intended access restrictions and expose sensitive information via the web based building automation server.

EPSS

Процентиль: 19%
0.00061
Низкий

9.2 Critical

CVSS4

Дефекты

CWE-863