Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6xfj-m9cp-qj5j

Опубликовано: 08 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 9.1
CVSS3: 7.5

Описание

FaceSentry Access Control System 6.4.8 contains a cleartext transmission vulnerability that allows remote attackers to intercept authentication credentials. Attackers can perform man-in-the-middle attacks to capture HTTP cookie authentication information during network communication.

FaceSentry Access Control System 6.4.8 contains a cleartext transmission vulnerability that allows remote attackers to intercept authentication credentials. Attackers can perform man-in-the-middle attacks to capture HTTP cookie authentication information during network communication.

EPSS

Процентиль: 21%
0.00066
Низкий

9.1 Critical

CVSS4

7.5 High

CVSS3

Дефекты

CWE-319

Связанные уязвимости

CVSS3: 7.5
nvd
около 1 месяца назад

FaceSentry Access Control System 6.4.8 contains a cleartext transmission vulnerability that allows remote attackers to intercept authentication credentials. Attackers can perform man-in-the-middle attacks to capture HTTP cookie authentication information during network communication.

EPSS

Процентиль: 21%
0.00066
Низкий

9.1 Critical

CVSS4

7.5 High

CVSS3

Дефекты

CWE-319