Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4xpg-7qpr-wrrf

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Schrack Technik microControl with firmware before 1.7.0 (937) stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain access data for the ftp and telnet services via a direct request for ZTPUsrDtls.txt.

Schrack Technik microControl with firmware before 1.7.0 (937) stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain access data for the ftp and telnet services via a direct request for ZTPUsrDtls.txt.

EPSS

Процентиль: 77%
0.01072
Низкий

Дефекты

CWE-287

Связанные уязвимости

nvd
больше 11 лет назад

Schrack Technik microControl with firmware before 1.7.0 (937) stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain access data for the ftp and telnet services via a direct request for ZTPUsrDtls.txt.

EPSS

Процентиль: 77%
0.01072
Низкий

Дефекты

CWE-287