Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7j7j-4588-wpj2

Опубликовано: 07 сент. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.1

Описание

The Cognex 3D-A1000 Dimensioning System in firmware version 1.0.3 (3354) and prior is vulnerable to CWE-602: Client-Side Enforcement of Server-Side Security, which could allow attackers to bypass web access controls by inspecting and modifying the source code of password protected web elements.

The Cognex 3D-A1000 Dimensioning System in firmware version 1.0.3 (3354) and prior is vulnerable to CWE-602: Client-Side Enforcement of Server-Side Security, which could allow attackers to bypass web access controls by inspecting and modifying the source code of password protected web elements.

EPSS

Процентиль: 46%
0.00235
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-602

Связанные уязвимости

CVSS3: 9.1
nvd
больше 3 лет назад

The Cognex 3D-A1000 Dimensioning System in firmware version 1.0.3 (3354) and prior is vulnerable to CWE-602: Client-Side Enforcement of Server-Side Security, which could allow attackers to bypass web access controls by inspecting and modifying the source code of password protected web elements.

CVSS3: 9.8
fstec
больше 3 лет назад

Уязвимость микропрограммного обеспечения cистемы объемного измерения Cognex 3D-A1000 Dimensioning System, связанная с реализацией функций безопасности на стороне клиента, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 46%
0.00235
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-602