Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4h3h-6vxm-m4vr

Опубликовано: 12 мая 2026
Источник: github
Github: Не прошло ревью
CVSS4: 9.2

Описание

Insecure generation of credentials in the local SAT (Technical Support) access functionality of the Ingecon Sun EMS Board. The vulnerability arose because the secret access credentials were not based on a secure cryptographic scheme, but rather on a weak hashing algorithm, which could allow an attacker to carry out a privilege escalation.

Insecure generation of credentials in the local SAT (Technical Support) access functionality of the Ingecon Sun EMS Board. The vulnerability arose because the secret access credentials were not based on a secure cryptographic scheme, but rather on a weak hashing algorithm, which could allow an attacker to carry out a privilege escalation.

EPSS

Процентиль: 5%
0.00152
Низкий

9.2 Critical

CVSS4

Дефекты

CWE-327

Связанные уязвимости

nvd
3 месяца назад

Insecure generation of credentials in the local SAT (Technical Support) access functionality of the Ingecon Sun EMS Board. The vulnerability arose because the secret access credentials were not based on a secure cryptographic scheme, but rather on a weak hashing algorithm, which could allow an attacker to carry out a privilege escalation.

EPSS

Процентиль: 5%
0.00152
Низкий

9.2 Critical

CVSS4

Дефекты

CWE-327