Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3hrf-pq5f-6637

Опубликовано: 05 мая 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

Incorrect access control in the component /config/download of DBSyncer v2.0.6 allows attackers to access the JSON file containing sensitive account information, including the encrypted password.

Incorrect access control in the component /config/download of DBSyncer v2.0.6 allows attackers to access the JSON file containing sensitive account information, including the encrypted password.

EPSS

Процентиль: 28%
0.001
Низкий

7.5 High

CVSS3

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 7.5
nvd
9 месяцев назад

Incorrect access control in the component /config/download of DBSyncer v2.0.6 allows attackers to access the JSON file containing sensitive account information, including the encrypted password.

EPSS

Процентиль: 28%
0.001
Низкий

7.5 High

CVSS3

Дефекты

CWE-284