Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9973-9x4h-pfgx

Опубликовано: 07 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 7.7
CVSS3: 8.8

Описание

An improper certificate validation vulnerability has been reported to affect Helpdesk. If exploited, the vulnerability could allow remote attackers to compromise the security of the system.

We have already fixed the vulnerability in the following version: Helpdesk 3.3.3 and later

An improper certificate validation vulnerability has been reported to affect Helpdesk. If exploited, the vulnerability could allow remote attackers to compromise the security of the system.

We have already fixed the vulnerability in the following version: Helpdesk 3.3.3 and later

EPSS

Процентиль: 27%
0.00096
Низкий

7.7 High

CVSS4

8.8 High

CVSS3

Дефекты

CWE-295

Связанные уязвимости

CVSS3: 8.8
nvd
11 месяцев назад

An improper certificate validation vulnerability has been reported to affect Helpdesk. If exploited, the vulnerability could allow remote attackers to compromise the security of the system. We have already fixed the vulnerability in the following version: Helpdesk 3.3.3 and later

CVSS3: 8.8
fstec
11 месяцев назад

Уязвимость системы автоматизации технической поддержки Helpdesk сетевых устройств Qnap, связанная с ошибками процедуры подтверждения подлинности сертификата, позволяющая нарушителю получить несанкционированный доступ к устройству

EPSS

Процентиль: 27%
0.00096
Низкий

7.7 High

CVSS4

8.8 High

CVSS3

Дефекты

CWE-295