Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8hhf-pc74-44fj

Опубликовано: 12 сент. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 6.3
CVSS3: 4.8

Описание

WTW-EAGLE App does not properly validate server certificates, which may allow a man-in-the-middle attacker to monitor encrypted traffic.

WTW-EAGLE App does not properly validate server certificates, which may allow a man-in-the-middle attacker to monitor encrypted traffic.

EPSS

Процентиль: 8%
0.0003
Низкий

6.3 Medium

CVSS4

4.8 Medium

CVSS3

Дефекты

CWE-295

Связанные уязвимости

CVSS3: 4.8
nvd
5 месяцев назад

WTW-EAGLE App does not properly validate server certificates, which may allow a man-in-the-middle attacker to monitor encrypted traffic.

EPSS

Процентиль: 8%
0.0003
Низкий

6.3 Medium

CVSS4

4.8 Medium

CVSS3

Дефекты

CWE-295