Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2mr3-j246-x7x3

Опубликовано: 26 июн. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

An unauthenticated attacker who knows the target device's serial number, can generate the default administrator password for the device. An unauthenticated attacker can first discover the target device's serial number via CVE-2024-51977 over HTTP/HTTPS/IPP, or via a PJL request, or via an SNMP request.

An unauthenticated attacker who knows the target device's serial number, can generate the default administrator password for the device. An unauthenticated attacker can first discover the target device's serial number via CVE-2024-51977 over HTTP/HTTPS/IPP, or via a PJL request, or via an SNMP request.

EPSS

Процентиль: 98%
0.48343
Средний

9.8 Critical

CVSS3

Дефекты

CWE-1391

Связанные уязвимости

CVSS3: 9.8
nvd
8 месяцев назад

An unauthenticated attacker who knows the target device's serial number, can generate the default administrator password for the device. An unauthenticated attacker can first discover the target device's serial number via CVE-2024-51977 over HTTP/HTTPS/IPP, or via a PJL request, or via an SNMP request.

EPSS

Процентиль: 98%
0.48343
Средний

9.8 Critical

CVSS3

Дефекты

CWE-1391