Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8768-9r9g-5fj5

Опубликовано: 06 июн. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 2.3

Описание

A use of externally-controlled format string vulnerability has been reported to affect Qsync Central. If exploited, the vulnerability could allow remote attackers who have gained user access to obtain secret data or modify memory.

We have already fixed the vulnerability in the following version: Qsync Central 4.5.0.6 ( 2025/03/20 ) and later

A use of externally-controlled format string vulnerability has been reported to affect Qsync Central. If exploited, the vulnerability could allow remote attackers who have gained user access to obtain secret data or modify memory.

We have already fixed the vulnerability in the following version: Qsync Central 4.5.0.6 ( 2025/03/20 ) and later

EPSS

Процентиль: 14%
0.00046
Низкий

2.3 Low

CVSS4

Дефекты

CWE-134

Связанные уязвимости

CVSS3: 8.1
nvd
8 месяцев назад

A use of externally-controlled format string vulnerability has been reported to affect Qsync Central. If exploited, the vulnerability could allow remote attackers who have gained user access to obtain secret data or modify memory. We have already fixed the vulnerability in the following version: Qsync Central 4.5.0.6 ( 2025/03/20 ) and later

EPSS

Процентиль: 14%
0.00046
Низкий

2.3 Low

CVSS4

Дефекты

CWE-134