Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4cwx-87j2-xc8v

Опубликовано: 04 нояб. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.1

Описание

** UNSUPPPORTED WHEN ASSIGNED **Broken Access Control in User Authentication in Avaya Scopia Pathfinder 10 and 20 PTS version 8.3.7.0.4 allows remote unauthenticated attackers to bypass the login page, access sensitive information, and reset user passwords via URL modification.

** UNSUPPPORTED WHEN ASSIGNED **Broken Access Control in User Authentication in Avaya Scopia Pathfinder 10 and 20 PTS version 8.3.7.0.4 allows remote unauthenticated attackers to bypass the login page, access sensitive information, and reset user passwords via URL modification.

EPSS

Процентиль: 65%
0.00483
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-306

Связанные уязвимости

CVSS3: 9.1
nvd
больше 3 лет назад

Broken Access Control in User Authentication in Avaya Scopia Pathfinder 10 and 20 PTS version 8.3.7.0.4 allows remote unauthenticated attackers to bypass the login page, access sensitive information, and reset user passwords via URL modification.

EPSS

Процентиль: 65%
0.00483
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-306