Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3qw9-56c9-wgjp

Опубликовано: 17 окт. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

In Dell Secure Connect Gateway Application and Secure Connect Gateway Appliance (between v5.10.00.00 and v5.18.00.00), a security concern has been identified, where a malicious user with a valid User session may inject malicious content in filters of Collection Rest API. This issue may potentially lead to unintentional information disclosure from the product database.

In Dell Secure Connect Gateway Application and Secure Connect Gateway Appliance (between v5.10.00.00 and v5.18.00.00), a security concern has been identified, where a malicious user with a valid User session may inject malicious content in filters of Collection Rest API. This issue may potentially lead to unintentional information disclosure from the product database.

EPSS

Процентиль: 54%
0.00308
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 5.4
nvd
почти 2 года назад

In Dell Secure Connect Gateway Application and Secure Connect Gateway Appliance (between v5.10.00.00 and v5.18.00.00), a security concern has been identified, where a malicious user with a valid User session may inject malicious content in filters of Collection Rest API. This issue may potentially lead to unintentional information disclosure from the product database.

EPSS

Процентиль: 54%
0.00308
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-89