Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9crg-j5q8-hwv3

Опубликовано: 07 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 7.1
CVSS3: 6.5

Описание

MicroServer copies parts of the system firmware to an unencrypted external SD card on boot, which contains user and vendor secrets. An attacker can utilize these plaintext secrets to modify the vendor firmware, or gain admin access to the web portal.

MicroServer copies parts of the system firmware to an unencrypted external SD card on boot, which contains user and vendor secrets. An attacker can utilize these plaintext secrets to modify the vendor firmware, or gain admin access to the web portal.

EPSS

Процентиль: 1%
0.0001
Низкий

7.1 High

CVSS4

6.5 Medium

CVSS3

Дефекты

CWE-313

Связанные уязвимости

CVSS3: 6.5
nvd
около 1 месяца назад

MicroServer copies parts of the system firmware to an unencrypted external SD card on boot, which contains user and vendor secrets. An attacker can utilize these plaintext secrets to modify the vendor firmware, or gain admin access to the web portal.

EPSS

Процентиль: 1%
0.0001
Низкий

7.1 High

CVSS4

6.5 Medium

CVSS3

Дефекты

CWE-313