Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5g5h-vp5m-chrx

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.6

Описание

On 2.1.15 version and below of Lider module in LiderAhenk software is leaking it's configurations via an unsecured API. An attacker with an access to the configurations API could get valid LDAP credentials.

On 2.1.15 version and below of Lider module in LiderAhenk software is leaking it's configurations via an unsecured API. An attacker with an access to the configurations API could get valid LDAP credentials.

EPSS

Процентиль: 60%
0.00405
Низкий

9.6 Critical

CVSS3

Дефекты

CWE-306

Связанные уязвимости

CVSS3: 9.6
nvd
больше 4 лет назад

On 2.1.15 version and below of Lider module in LiderAhenk software is leaking it's configurations via an unsecured API. An attacker with an access to the configurations API could get valid LDAP credentials.

EPSS

Процентиль: 60%
0.00405
Низкий

9.6 Critical

CVSS3

Дефекты

CWE-306