Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-74w8-7jwm-qpm3

Опубликовано: 19 июн. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

A remote unprivileged attacker can modify and access configuration settings on the EventCam App due to the absence of API authentication. The lack of authentication in the API allows the attacker to potentially compromise the functionality of the EventCam App.

A remote unprivileged attacker can modify and access configuration settings on the EventCam App due to the absence of API authentication. The lack of authentication in the API allows the attacker to potentially compromise the functionality of the EventCam App.

EPSS

Процентиль: 38%
0.00165
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-306

Связанные уязвимости

CVSS3: 9.8
nvd
больше 2 лет назад

A remote unprivileged attacker can modify and access configuration settings on the EventCam App due to the absence of API authentication. The lack of authentication in the API allows the attacker to potentially compromise the functionality of the EventCam App.

EPSS

Процентиль: 38%
0.00165
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-306