Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-325m-r869-rj99

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.7

Описание

The Java client in Adcon Telemetry A840 Telemetry Gateway Base Station does not authenticate the station device, which allows man-in-the-middle attackers to spoof devices and obtain sensitive information by reading cleartext packet data, related to the lack of SSL support.

The Java client in Adcon Telemetry A840 Telemetry Gateway Base Station does not authenticate the station device, which allows man-in-the-middle attackers to spoof devices and obtain sensitive information by reading cleartext packet data, related to the lack of SSL support.

EPSS

Процентиль: 39%
0.00172
Низкий

8.7 High

CVSS3

Дефекты

CWE-20
CWE-200

Связанные уязвимости

CVSS3: 8.7
nvd
около 10 лет назад

The Java client in Adcon Telemetry A840 Telemetry Gateway Base Station does not authenticate the station device, which allows man-in-the-middle attackers to spoof devices and obtain sensitive information by reading cleartext packet data, related to the lack of SSL support.

EPSS

Процентиль: 39%
0.00172
Низкий

8.7 High

CVSS3

Дефекты

CWE-20
CWE-200