Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4fxf-jpcw-9r8x

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.6

Описание

Directory traversal vulnerability in the web server on Honeywell Midas gas detectors before 1.13b3 and Midas Black gas detectors before 2.13b3 allows remote attackers to bypass authentication, and write to a configuration file or trigger a calibration or test, via unspecified vectors.

Directory traversal vulnerability in the web server on Honeywell Midas gas detectors before 1.13b3 and Midas Black gas detectors before 2.13b3 allows remote attackers to bypass authentication, and write to a configuration file or trigger a calibration or test, via unspecified vectors.

EPSS

Процентиль: 52%
0.00296
Низкий

8.6 High

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 8.6
nvd
около 10 лет назад

Directory traversal vulnerability in the web server on Honeywell Midas gas detectors before 1.13b3 and Midas Black gas detectors before 2.13b3 allows remote attackers to bypass authentication, and write to a configuration file or trigger a calibration or test, via unspecified vectors.

EPSS

Процентиль: 52%
0.00296
Низкий

8.6 High

CVSS3

Дефекты

CWE-22