Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5244-5vqh-qwmc

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

ELECOM WRC-300FEBK-S contains an improper certificate validation vulnerability. Via a man-in-the-middle attack, an attacker may alter the communication response. As a result, an arbitrary OS command may be executed on the affected device.

ELECOM WRC-300FEBK-S contains an improper certificate validation vulnerability. Via a man-in-the-middle attack, an attacker may alter the communication response. As a result, an arbitrary OS command may be executed on the affected device.

EPSS

Процентиль: 28%
0.001
Низкий

Дефекты

CWE-295

Связанные уязвимости

CVSS3: 4.8
nvd
почти 5 лет назад

ELECOM WRC-300FEBK-S contains an improper certificate validation vulnerability. Via a man-in-the-middle attack, an attacker may alter the communication response. As a result, an arbitrary OS command may be executed on the affected device.

EPSS

Процентиль: 28%
0.001
Низкий

Дефекты

CWE-295