Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5673-2x9h-2626

Опубликовано: 02 мая 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

Unauthenticated attackers can perform actions, using SSH private keys, by knowing the IP address and having access to the same network of one of the machines in the HA or Cluster group. This vulnerability has been closed by enhancing LoadMaster partner communications to require a shared secret that must be exchanged between the partners before communication can proceed.

Unauthenticated attackers can perform actions, using SSH private keys, by knowing the IP address and having access to the same network of one of the machines in the HA or Cluster group. This vulnerability has been closed by enhancing LoadMaster partner communications to require a shared secret that must be exchanged between the partners before communication can proceed.

EPSS

Процентиль: 47%
0.00242
Низкий

7.5 High

CVSS3

Дефекты

CWE-798

Связанные уязвимости

CVSS3: 7.5
nvd
почти 2 года назад

Unauthenticated attackers can perform actions, using SSH private keys, by knowing the IP address and having access to the same network of one of the machines in the HA or Cluster group. This vulnerability has been closed by enhancing LoadMaster partner communications to require a shared secret that must be exchanged between the partners before communication can proceed.

EPSS

Процентиль: 47%
0.00242
Низкий

7.5 High

CVSS3

Дефекты

CWE-798