Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-54rg-483r-gp7w

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

An issue was discovered on the Impinj Speedway Connect R420 RFID Reader before 2.2.2. The affected web interface is vulnerable to ClickJacking or UI Redressing: it is possible to access the web application in an iframe, and clicking on the iframe will redirect to a third-party application or perform other malicious actions.

An issue was discovered on the Impinj Speedway Connect R420 RFID Reader before 2.2.2. The affected web interface is vulnerable to ClickJacking or UI Redressing: it is possible to access the web application in an iframe, and clicking on the iframe will redirect to a third-party application or perform other malicious actions.

EPSS

Процентиль: 49%
0.00259
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-601

Связанные уязвимости

CVSS3: 4.3
nvd
больше 7 лет назад

An issue was discovered on the Impinj Speedway Connect R420 RFID Reader before 2.2.2. The affected web interface is vulnerable to ClickJacking or UI Redressing: it is possible to access the web application in an iframe, and clicking on the iframe will redirect to a third-party application or perform other malicious actions.

EPSS

Процентиль: 49%
0.00259
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-601