Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-85wm-66pv-53vh

Опубликовано: 29 сент. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 3.7

Описание

Dell OS10, version 10.5.3.4, contains an Improper Certificate Validation vulnerability in Support Assist. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to unauthorized access to limited switch configuration data. The vulnerability could be leveraged by attackers to conduct man-in-the-middle attacks to gain access to the Support Assist information.

Dell OS10, version 10.5.3.4, contains an Improper Certificate Validation vulnerability in Support Assist. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to unauthorized access to limited switch configuration data. The vulnerability could be leveraged by attackers to conduct man-in-the-middle attacks to gain access to the Support Assist information.

EPSS

Процентиль: 30%
0.00114
Низкий

3.7 Low

CVSS3

Дефекты

CWE-295

Связанные уязвимости

CVSS3: 3.7
nvd
больше 3 лет назад

Dell OS10, version 10.5.3.4, contains an Improper Certificate Validation vulnerability in Support Assist. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to unauthorized access to limited switch configuration data. The vulnerability could be leveraged by attackers to conduct man-in-the-middle attacks to gain access to the Support Assist information.

CVSS3: 3.7
fstec
больше 3 лет назад

Уязвимость компонента SupportAssist сетевой операционной системы SmartFabric OS10, позволяющая нарушителю получить доступ к защищаемой информации путем проведения атак типа "человек посередине"

EPSS

Процентиль: 30%
0.00114
Низкий

3.7 Low

CVSS3

Дефекты

CWE-295