Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8jmx-gwp7-3j43

Опубликовано: 21 мая 2025
Источник: github
Github: Не прошло ревью
CVSS4: 10
CVSS3: 10

Описание

The embedded web server lacks authentication and access controls, allowing unrestricted remote access. This could lead to configuration changes, operational disruption, or arbitrary code execution depending on the environment and exposed functionality.

The embedded web server lacks authentication and access controls, allowing unrestricted remote access. This could lead to configuration changes, operational disruption, or arbitrary code execution depending on the environment and exposed functionality.

EPSS

Процентиль: 62%
0.0104
Низкий

10 Critical

CVSS4

10 Critical

CVSS3

Дефекты

CWE-306

Связанные уязвимости

CVSS3: 10
nvd
больше 1 года назад

The embedded web server lacks authentication and access controls, allowing unrestricted remote access. This could lead to configuration changes, operational disruption, or arbitrary code execution depending on the environment and exposed functionality.

CVSS3: 10
fstec
больше 1 года назад

Уязвимость веб-сервера микропрограммного обеспечения шлюза Modbus AutomationDirect MB-Gateway, позволяющая нарушителю получить несанкционированный доступ к устройству

EPSS

Процентиль: 62%
0.0104
Низкий

10 Critical

CVSS4

10 Critical

CVSS3

Дефекты

CWE-306