Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9vq3-hrgr-83x9

Опубликовано: 21 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

Authorized users may install a maliciously modified package file when updating the device via the web user interface. The user may inadvertently use a package file obtained from an unauthorized source or a file that was compromised between download and deployment.

Authorized users may install a maliciously modified package file when updating the device via the web user interface. The user may inadvertently use a package file obtained from an unauthorized source or a file that was compromised between download and deployment.

EPSS

Процентиль: 23%
0.00076
Низкий

7.8 High

CVSS3

Дефекты

CWE-345

Связанные уязвимости

CVSS3: 8.4
nvd
почти 4 года назад

Authorized users may install a maliciously modified package file when updating the device via the web user interface. The user may inadvertently use a package file obtained from an unauthorized source or a file that was compromised between download and deployment.

CVSS3: 8.4
fstec
почти 4 года назад

Уязвимость веб-интерфейса межсетевого экрана DA50N, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 23%
0.00076
Низкий

7.8 High

CVSS3

Дефекты

CWE-345