Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8gcr-v287-2xpv

Опубликовано: 20 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

Mobotix Control Center (MxCC) through 2.5.4.5 has Insufficiently Protected Credentials, Storing Passwords in a Recoverable Format via the MxCC.ini config file. The credential storage method in this software enables an attacker/user of the machine to gain admin access to the software and gain access to recordings/recording locations.

Mobotix Control Center (MxCC) through 2.5.4.5 has Insufficiently Protected Credentials, Storing Passwords in a Recoverable Format via the MxCC.ini config file. The credential storage method in this software enables an attacker/user of the machine to gain admin access to the software and gain access to recordings/recording locations.

EPSS

Процентиль: 53%
0.00299
Низкий

8.8 High

CVSS3

Дефекты

CWE-522

Связанные уязвимости

CVSS3: 8.8
nvd
больше 3 лет назад

Mobotix Control Center (MxCC) through 2.5.4.5 has Insufficiently Protected Credentials, Storing Passwords in a Recoverable Format via the MxCC.ini config file. The credential storage method in this software enables an attacker/user of the machine to gain admin access to the software and gain access to recordings/recording locations.

EPSS

Процентиль: 53%
0.00299
Низкий

8.8 High

CVSS3

Дефекты

CWE-522