Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-54jv-mpgv-wvp2

Опубликовано: 20 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.5

Описание

The StrongDM Client insufficiently protected a pre-authentication token. Attackers could exploit this to intercept and reuse the token, potentially redeeming valid authentication credentials through a race condition.

The StrongDM Client insufficiently protected a pre-authentication token. Attackers could exploit this to intercept and reuse the token, potentially redeeming valid authentication credentials through a race condition.

EPSS

Процентиль: 1%
0.0001
Низкий

8.5 High

CVSS4

Дефекты

CWE-319

Связанные уязвимости

nvd
6 месяцев назад

The StrongDM Client insufficiently protected a pre-authentication token. Attackers could exploit this to intercept and reuse the token, potentially redeeming valid authentication credentials through a race condition.

EPSS

Процентиль: 1%
0.0001
Низкий

8.5 High

CVSS4

Дефекты

CWE-319