Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-43mw-858p-8pf4

Опубликовано: 22 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell with Chime - firmware v3.0.0.4662_2503122283 was discovered to manage users' sessions system wide instead of an account-by-account basis, potentially leading to a Denial of Service (DoS) via resource exhaustion.

Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell with Chime - firmware v3.0.0.4662_2503122283 was discovered to manage users' sessions system wide instead of an account-by-account basis, potentially leading to a Denial of Service (DoS) via resource exhaustion.

EPSS

Процентиль: 9%
0.00033
Низкий

7.5 High

CVSS3

Дефекты

CWE-400

Связанные уязвимости

CVSS3: 4
nvd
6 месяцев назад

Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell with Chime - firmware v3.0.0.4662_2503122283 was discovered to manage users' sessions system wide instead of an account-by-account basis, potentially leading to a Denial of Service (DoS) via resource exhaustion. NOTE: the Supplier reports that the system-wide limit is intentional.

EPSS

Процентиль: 9%
0.00033
Низкий

7.5 High

CVSS3

Дефекты

CWE-400