Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cvf8-gvvm-fg6c

Опубликовано: 01 сент. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

An unauthenticated client can query the Security Domain hosts inventory via GET /ca/rest/securityDomain/hosts and receive a structured response enumerating internal PKI/CA hosts and roles (security domain topology and participating subsystems), without requiring a principal, client certificate, or session.

An unauthenticated client can query the Security Domain hosts inventory via GET /ca/rest/securityDomain/hosts and receive a structured response enumerating internal PKI/CA hosts and roles (security domain topology and participating subsystems), without requiring a principal, client certificate, or session.

EPSS

Процентиль: 3%
0.0013
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 5.3
ubuntu
3 дня назад

An unauthenticated client can query the Security Domain hosts inventory via GET /ca/rest/securityDomain/hosts and receive a structured response enumerating internal PKI/CA hosts and roles (security domain topology and participating subsystems), without requiring a principal, client certificate, or session.

CVSS3: 5.3
redhat
5 дней назад

An unauthenticated client can query the Security Domain hosts inventory via GET /ca/rest/securityDomain/hosts and receive a structured response enumerating internal PKI/CA hosts and roles (security domain topology and participating subsystems), without requiring a principal, client certificate, or session.

CVSS3: 5.3
nvd
5 дней назад

An unauthenticated client can query the Security Domain hosts inventory via GET /ca/rest/securityDomain/hosts and receive a structured response enumerating internal PKI/CA hosts and roles (security domain topology and participating subsystems), without requiring a principal, client certificate, or session.

CVSS3: 5.3
debian
5 дней назад

An unauthenticated client can query the Security Domain hosts inventor ...

EPSS

Процентиль: 3%
0.0013
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-200