Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-824r-f6r2-rhhx

Опубликовано: 18 сент. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 10

Описание

CIRCUTOR Q-SMT in its firmware version 1.0.4, could be affected by a denial of service (DoS) attack if an attacker with access to the web service bypasses the authentication mechanisms on the login page, allowing the attacker to use all the functionalities implemented at web level that allow interacting with the device.

CIRCUTOR Q-SMT in its firmware version 1.0.4, could be affected by a denial of service (DoS) attack if an attacker with access to the web service bypasses the authentication mechanisms on the login page, allowing the attacker to use all the functionalities implemented at web level that allow interacting with the device.

EPSS

Процентиль: 22%
0.00074
Низкий

10 Critical

CVSS3

Дефекты

CWE-1284

Связанные уязвимости

CVSS3: 10
nvd
больше 1 года назад

CIRCUTOR Q-SMT in its firmware version 1.0.4, could be affected by a denial of service (DoS) attack if an attacker with access to the web service bypasses the authentication mechanisms on the login page, allowing the attacker to use all the functionalities implemented at web level that allow interacting with the device.

EPSS

Процентиль: 22%
0.00074
Низкий

10 Critical

CVSS3

Дефекты

CWE-1284