Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-54wx-g7x6-gj3j

Опубликовано: 24 июн. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

The user access rights validation in the web server of the Bosch Ethernet switch PRA-ES8P2S with software version 1.01.05 was insufficient. This would allow a non-administrator user to obtain administrator user access rights.

The user access rights validation in the web server of the Bosch Ethernet switch PRA-ES8P2S with software version 1.01.05 was insufficient. This would allow a non-administrator user to obtain administrator user access rights.

EPSS

Процентиль: 56%
0.00336
Низкий

8.8 High

CVSS3

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 8.8
nvd
больше 3 лет назад

The user access rights validation in the web server of the Bosch Ethernet switch PRA-ES8P2S with software version 1.01.05 was insufficient. This would allow a non-administrator user to obtain administrator user access rights.

CVSS3: 8.8
fstec
больше 3 лет назад

Уязвимость веб-сервера Ethernet-коммутатора Bosch PRA-ES8P2S, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 56%
0.00336
Низкий

8.8 High

CVSS3

Дефекты

CWE-269