Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8jmx-gwp7-3j43

Опубликовано: 21 мая 2025
Источник: github
Github: Не прошло ревью
CVSS4: 10
CVSS3: 10

Описание

The embedded web server lacks authentication and access controls, allowing unrestricted remote access. This could lead to configuration changes, operational disruption, or arbitrary code execution depending on the environment and exposed functionality.

The embedded web server lacks authentication and access controls, allowing unrestricted remote access. This could lead to configuration changes, operational disruption, or arbitrary code execution depending on the environment and exposed functionality.

EPSS

Процентиль: 35%
0.00143
Низкий

10 Critical

CVSS4

10 Critical

CVSS3

Дефекты

CWE-306

Связанные уязвимости

CVSS3: 10
nvd
9 месяцев назад

The embedded web server lacks authentication and access controls, allowing unrestricted remote access. This could lead to configuration changes, operational disruption, or arbitrary code execution depending on the environment and exposed functionality.

CVSS3: 10
fstec
9 месяцев назад

Уязвимость веб-сервера микропрограммного обеспечения шлюза Modbus AutomationDirect MB-Gateway, позволяющая нарушителю получить несанкционированный доступ к устройству

EPSS

Процентиль: 35%
0.00143
Низкий

10 Critical

CVSS4

10 Critical

CVSS3

Дефекты

CWE-306