Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-94fr-f773-p7wg

Опубликовано: 09 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.7
CVSS3: 7.5

Описание

OpenBMCS 2.4 contains an information disclosure vulnerability that allows unauthenticated attackers to access sensitive files by exploiting directory listing functionality. Attackers can browse directories like /debug/ and /php/ to discover configuration files, database credentials, and system information.

OpenBMCS 2.4 contains an information disclosure vulnerability that allows unauthenticated attackers to access sensitive files by exploiting directory listing functionality. Attackers can browse directories like /debug/ and /php/ to discover configuration files, database credentials, and system information.

EPSS

Процентиль: 55%
0.0033
Низкий

8.7 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-548

Связанные уязвимости

CVSS3: 7.5
nvd
2 месяца назад

OpenBMCS 2.4 contains an information disclosure vulnerability that allows unauthenticated attackers to access sensitive files by exploiting directory listing functionality. Attackers can browse directories like /debug/ and /php/ to discover configuration files, database credentials, and system information.

EPSS

Процентиль: 55%
0.0033
Низкий

8.7 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-548