Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-chwm-h2rg-vxxf

Опубликовано: 16 сент. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

OMFLOW from The SYSCOM Group does not properly restrict the query range of its data query functionality, allowing remote attackers with regular privileges to obtain accounts and password hashes of other users.

OMFLOW from The SYSCOM Group does not properly restrict the query range of its data query functionality, allowing remote attackers with regular privileges to obtain accounts and password hashes of other users.

EPSS

Процентиль: 36%
0.00152
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 6.5
nvd
больше 1 года назад

OMFLOW from The SYSCOM Group does not properly restrict the query range of its data query functionality, allowing remote attackers with regular privileges to obtain accounts and password hashes of other users.

EPSS

Процентиль: 36%
0.00152
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-200