Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cg5h-m79h-hhgh

Опубликовано: 28 окт. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

Haas Controller version 100.20.000.1110 has insufficient granularity of access control when using the "Ethernet Q Commands" service. Any user is able to write macros into registers outside of the authorized accessible range. This could allow a user to access privileged resources or resources out of context.

Haas Controller version 100.20.000.1110 has insufficient granularity of access control when using the "Ethernet Q Commands" service. Any user is able to write macros into registers outside of the authorized accessible range. This could allow a user to access privileged resources or resources out of context.

EPSS

Процентиль: 46%
0.00234
Низкий

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 9.8
nvd
больше 3 лет назад

Haas Controller version 100.20.000.1110 has insufficient granularity of access control when using the "Ethernet Q Commands" service. Any user is able to write macros into registers outside of the authorized accessible range. This could allow a user to access privileged resources or resources out of context.

EPSS

Процентиль: 46%
0.00234
Низкий

8.8 High

CVSS3