Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f34x-833g-jcxv

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.9

Описание

An authentication bypass vulnerability exists in the Web Manager functionality of Lantronix XPort EDGE 3.0.0.0R11, 3.1.0.0R9, 3.4.0.0R12 and 4.2.0.0R7. A specially crafted HTTP request can cause increased privileges. An attacker can send an HTTP request to trigger this vulnerability.

An authentication bypass vulnerability exists in the Web Manager functionality of Lantronix XPort EDGE 3.0.0.0R11, 3.1.0.0R9, 3.4.0.0R12 and 4.2.0.0R7. A specially crafted HTTP request can cause increased privileges. An attacker can send an HTTP request to trigger this vulnerability.

EPSS

Процентиль: 25%
0.00087
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-287
CWE-352

Связанные уязвимости

CVSS3: 4.5
nvd
около 5 лет назад

An authentication bypass vulnerability exists in the Web Manager functionality of Lantronix XPort EDGE 3.0.0.0R11, 3.1.0.0R9, 3.4.0.0R12 and 4.2.0.0R7. A specially crafted HTTP request can cause increased privileges. An attacker can send an HTTP request to trigger this vulnerability.

EPSS

Процентиль: 25%
0.00087
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-287
CWE-352