Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-73r6-4f43-344g

Опубликовано: 06 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.6
CVSS3: 7.5

Описание

iDS6 DSSPro Digital Signage System 6.2 contains a sensitive information disclosure vulnerability that allows remote attackers to intercept authentication credentials through cleartext cookie transmission. Attackers can exploit the autoSave feature to capture user passwords during man-in-the-middle attacks on HTTP communications.

iDS6 DSSPro Digital Signage System 6.2 contains a sensitive information disclosure vulnerability that allows remote attackers to intercept authentication credentials through cleartext cookie transmission. Attackers can exploit the autoSave feature to capture user passwords during man-in-the-middle attacks on HTTP communications.

EPSS

Процентиль: 28%
0.001
Низкий

8.6 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-319

Связанные уязвимости

CVSS3: 7.5
nvd
около 1 месяца назад

iDS6 DSSPro Digital Signage System 6.2 contains a sensitive information disclosure vulnerability that allows remote attackers to intercept authentication credentials through cleartext cookie transmission. Attackers can exploit the autoSave feature to capture user passwords during man-in-the-middle attacks on HTTP communications.

EPSS

Процентиль: 28%
0.001
Низкий

8.6 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-319