Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5922-vxrc-h3gf

Опубликовано: 18 дек. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 9.2
CVSS3: 9.8

Описание

Wapro ERP Desktop is vulnerable to MS SQL protocol downgrade request from a server side, what could lead to an unencrypted communication vulnerable to data interception and modification. This issue affects Wapro ERP Desktop versions before 9.00.0.

Wapro ERP Desktop is vulnerable to MS SQL protocol downgrade request from a server side, what could lead to an unencrypted communication vulnerable to data interception and modification. This issue affects Wapro ERP Desktop versions before 9.00.0.

EPSS

Процентиль: 42%
0.00201
Низкий

9.2 Critical

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-311
CWE-757
CWE-922

Связанные уязвимости

CVSS3: 9.8
nvd
около 1 года назад

Wapro ERP Desktop is vulnerable to MS SQL protocol downgrade request from a server side, what could lead to an unencrypted communication vulnerable to data interception and modification. This issue affects Wapro ERP Desktop versions before 9.00.0.

EPSS

Процентиль: 42%
0.00201
Низкий

9.2 Critical

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-311
CWE-757
CWE-922