Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9j57-6x57-gpv5

Опубликовано: 01 июл. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 10

Описание

An unauthenticated remote attacker can run arbitrary commands on the affected devices with high privileges because the authentication for the Node_RED server is not configured by default.

An unauthenticated remote attacker can run arbitrary commands on the affected devices with high privileges because the authentication for the Node_RED server is not configured by default.

EPSS

Процентиль: 96%
0.1267
Средний

10 Critical

CVSS3

Дефекты

CWE-306

Связанные уязвимости

CVSS3: 10
nvd
около 1 года назад

An unauthenticated remote attacker can run arbitrary commands on the affected devices with high privileges because the authentication for the Node_RED server is not configured by default.

CVSS3: 10
fstec
около 1 года назад

Уязвимость сервера инструмента визуального программирования Node-RED операционной системы промышленного компьютера Pilz IndustrialPI, позволяющая нарушителю выполнить произвольные команды

EPSS

Процентиль: 96%
0.1267
Средний

10 Critical

CVSS3

Дефекты

CWE-306