Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2pv9-4p97-2r6r

Опубликовано: 26 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

It is possible to obtain the first administrator's hash set up on the system in Terramaster F4-210, F2-210 TOS 4.2.X (4.2.15-2107141517) as well as other information such as MAC address, internal IP address etc. by performing a request to the /module/api.php?mobile/webNasIPS endpoint.

It is possible to obtain the first administrator's hash set up on the system in Terramaster F4-210, F2-210 TOS 4.2.X (4.2.15-2107141517) as well as other information such as MAC address, internal IP address etc. by performing a request to the /module/api.php?mobile/webNasIPS endpoint.

EPSS

Процентиль: 98%
0.53996
Средний

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
nvd
почти 4 года назад

It is possible to obtain the first administrator's hash set up on the system in Terramaster F4-210, F2-210 TOS 4.2.X (4.2.15-2107141517) as well as other information such as MAC address, internal IP address etc. by performing a request to the /module/api.php?mobile/webNasIPS endpoint.

EPSS

Процентиль: 98%
0.53996
Средний

6.5 Medium

CVSS3