Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8cmw-hww2-95qp

Опубликовано: 03 июн. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

Delta Controls enteliTOUCH 3.40.3935, 3.40.3706, and 3.33.4005 was discovered to transmit and store sensitive information in cleartext. This vulnerability allows attackers to intercept HTTP Cookie authentication credentials via a man-in-the-middle attack.

Delta Controls enteliTOUCH 3.40.3935, 3.40.3706, and 3.33.4005 was discovered to transmit and store sensitive information in cleartext. This vulnerability allows attackers to intercept HTTP Cookie authentication credentials via a man-in-the-middle attack.

EPSS

Процентиль: 31%
0.00115
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-319

Связанные уязвимости

CVSS3: 5.9
nvd
больше 3 лет назад

Delta Controls enteliTOUCH 3.40.3935, 3.40.3706, and 3.33.4005 was discovered to transmit and store sensitive information in cleartext. This vulnerability allows attackers to intercept HTTP Cookie authentication credentials via a man-in-the-middle attack.

EPSS

Процентиль: 31%
0.00115
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-319