Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4vc4-vv83-m3fr

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Bulb Security Smartphone Pentest Framework (SPF) before 0.1.3 does not properly restrict access to frameworkgui/config, which allows remote attackers to obtain the plaintext database password via a direct request.

Bulb Security Smartphone Pentest Framework (SPF) before 0.1.3 does not properly restrict access to frameworkgui/config, which allows remote attackers to obtain the plaintext database password via a direct request.

EPSS

Процентиль: 48%
0.0025
Низкий

Связанные уязвимости

nvd
больше 11 лет назад

Bulb Security Smartphone Pentest Framework (SPF) before 0.1.3 does not properly restrict access to frameworkgui/config, which allows remote attackers to obtain the plaintext database password via a direct request.

EPSS

Процентиль: 48%
0.0025
Низкий