Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6354-6hwj-cjvq

Опубликовано: 13 мая 2026
Источник: github
Github: Не прошло ревью
CVSS4: 4.5
CVSS3: 8.7

Описание

An information disclosure vulnerability in Trust Protection Foundation enables an authenticated attacker to obtain sensitive information from the server's vault. Successful exploitation of this issue allows the attacker to impersonate any user within the environment and arbitrarily modify configuration settings.

An information disclosure vulnerability in Trust Protection Foundation enables an authenticated attacker to obtain sensitive information from the server's vault. Successful exploitation of this issue allows the attacker to impersonate any user within the environment and arbitrarily modify configuration settings.

EPSS

Процентиль: 15%
0.00239
Низкий

4.5 Medium

CVSS4

8.7 High

CVSS3

Дефекты

CWE-497

Связанные уязвимости

CVSS3: 8.7
nvd
3 месяца назад

An information disclosure vulnerability in Trust Protection Foundation enables an authenticated attacker to obtain sensitive information from the server's vault. Successful exploitation of this issue allows the attacker to impersonate any user within the environment and arbitrarily modify configuration settings.

CVSS3: 9
fstec
3 месяца назад

Уязвимость средства управления ключами и сертификатами Trust Protection Foundation (TPF), связанная с раскрытием системных данных неавторизованным лицам, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 15%
0.00239
Низкий

4.5 Medium

CVSS4

8.7 High

CVSS3

Дефекты

CWE-497