Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5fmx-vhp4-m6xv

Опубликовано: 06 дек. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.6

Описание

The authentication process to the web server uses a challenge response procedure which inludes the nonce and additional information. This challenge can be used several times for login and is therefore vulnerable for a replay attack.

The authentication process to the web server uses a challenge response procedure which inludes the nonce and additional information. This challenge can be used several times for login and is therefore vulnerable for a replay attack.

EPSS

Процентиль: 45%
0.00227
Низкий

5.6 Medium

CVSS3

Дефекты

CWE-323

Связанные уязвимости

CVSS3: 5.6
nvd
около 1 года назад

The authentication process to the web server uses a challenge response procedure which inludes the nonce and additional information. This challenge can be used several times for login and is therefore vulnerable for a replay attack.

EPSS

Процентиль: 45%
0.00227
Низкий

5.6 Medium

CVSS3

Дефекты

CWE-323