Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-95gc-w6f3-c2hh

Опубликовано: 11 фев. 2022
Источник: github
Github: Не прошло ревью

Описание

A CWE-798: Use of Hard-coded Credentials vulnerability exists. If an attacker were to obtain the TLS cryptographic key and take active control of the Courier tunneling communication network, they could potentially observe and manipulate traffic associated with product configuration.

A CWE-798: Use of Hard-coded Credentials vulnerability exists. If an attacker were to obtain the TLS cryptographic key and take active control of the Courier tunneling communication network, they could potentially observe and manipulate traffic associated with product configuration.

EPSS

Процентиль: 61%
0.00408
Низкий

Дефекты

CWE-798

Связанные уязвимости

CVSS3: 9.8
nvd
почти 4 года назад

A CWE-798: Use of Hard-coded Credentials vulnerability exists. If an attacker were to obtain the TLS cryptographic key and take active control of the Courier tunneling communication network, they could potentially observe and manipulate traffic associated with product configuration.

CVSS3: 7.1
fstec
около 3 лет назад

Уязвимость микропрограммного обеспечения устройств релейной защиты и управления Schneider Electric Easergy P40, позволяющая нарушителю манипулировать сетевым трафиком

EPSS

Процентиль: 61%
0.00408
Низкий

Дефекты

CWE-798