Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-85qr-ggvx-pgjx

Опубликовано: 01 дек. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

LOYTEC electronics GmbH LINX Configurator 7.4.10 uses HTTP Basic Authentication, which transmits usernames and passwords in base64-encoded cleartext and allows remote attackers to steal the password and gain full control of Loytec device configuration.

LOYTEC electronics GmbH LINX Configurator 7.4.10 uses HTTP Basic Authentication, which transmits usernames and passwords in base64-encoded cleartext and allows remote attackers to steal the password and gain full control of Loytec device configuration.

EPSS

Процентиль: 41%
0.00188
Низкий

7.5 High

CVSS3

Дефекты

CWE-319

Связанные уязвимости

CVSS3: 7.5
nvd
около 2 лет назад

LOYTEC electronics GmbH LINX Configurator (all versions) uses HTTP Basic Authentication, which transmits usernames and passwords in base64-encoded cleartext and allows remote attackers to steal the password and gain full control of Loytec device configuration.

EPSS

Процентиль: 41%
0.00188
Низкий

7.5 High

CVSS3

Дефекты

CWE-319