Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3cfw-2rv8-9rx3

Опубликовано: 18 июл. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

An issue was discovered in Poly EagleEye Director II before 2.2.2.1. Existence of a certain file (which can be created via an rsync backdoor) causes all API calls to execute as admin without authentication.

An issue was discovered in Poly EagleEye Director II before 2.2.2.1. Existence of a certain file (which can be created via an rsync backdoor) causes all API calls to execute as admin without authentication.

EPSS

Процентиль: 73%
0.00788
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 9.8
nvd
больше 3 лет назад

An issue was discovered in Poly EagleEye Director II before 2.2.2.1. Existence of a certain file (which can be created via an rsync backdoor) causes all API calls to execute as admin without authentication.

EPSS

Процентиль: 73%
0.00788
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-863