Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-ccqp-gv79-xc45

Опубликовано: 10 окт. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

Information exposure vulnerability in Shenzhen Reachfar v28, the exploitation of which could allow a remote attacker to retrieve all the week's logs stored in the 'log2' directory. An attacker could retrieve sensitive information such as remembered wifi networks, sent messages, SOS device locations and device configurations.

Information exposure vulnerability in Shenzhen Reachfar v28, the exploitation of which could allow a remote attacker to retrieve all the week's logs stored in the 'log2' directory. An attacker could retrieve sensitive information such as remembered wifi networks, sent messages, SOS device locations and device configurations.

EPSS

Процентиль: 50%
0.00264
Низкий

7.5 High

CVSS3

Дефекты

CWE-200
CWE-532

Связанные уязвимости

CVSS3: 7.5
nvd
больше 2 лет назад

Information exposure vulnerability in Shenzhen Reachfar v28, the exploitation of which could allow a remote attacker to retrieve all the week's logs stored in the 'log2' directory. An attacker could retrieve sensitive information such as remembered wifi networks, sent messages, SOS device locations and device configurations.

EPSS

Процентиль: 50%
0.00264
Низкий

7.5 High

CVSS3

Дефекты

CWE-200
CWE-532