Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-66vh-4g4j-7x2q

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The administrative interface in the embedded web server on the BreakingPoint Storm appliance before 3.0 does not require authentication for the gwt/BugReport script, which allows remote attackers to obtain sensitive information by downloading a .tgz file.

The administrative interface in the embedded web server on the BreakingPoint Storm appliance before 3.0 does not require authentication for the gwt/BugReport script, which allows remote attackers to obtain sensitive information by downloading a .tgz file.

EPSS

Процентиль: 79%
0.01314
Низкий

Дефекты

CWE-287

Связанные уязвимости

nvd
больше 13 лет назад

The administrative interface in the embedded web server on the BreakingPoint Storm appliance before 3.0 does not require authentication for the gwt/BugReport script, which allows remote attackers to obtain sensitive information by downloading a .tgz file.

EPSS

Процентиль: 79%
0.01314
Низкий

Дефекты

CWE-287