Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-ffqc-r4j7-pvvm

Опубликовано: 25 июн. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.6

Описание

The authentication mechanism used by poll workers to administer voting using the tested version of Dominion Voting Systems ImageCast X can expose cryptographic secrets used to protect election information. An attacker could leverage this vulnerability to gain access to sensitive information and perform privileged actions, potentially affecting other election equipment.

The authentication mechanism used by poll workers to administer voting using the tested version of Dominion Voting Systems ImageCast X can expose cryptographic secrets used to protect election information. An attacker could leverage this vulnerability to gain access to sensitive information and perform privileged actions, potentially affecting other election equipment.

EPSS

Процентиль: 13%
0.00043
Низкий

7.6 High

CVSS3

Дефекты

CWE-266
CWE-269
CWE-863

Связанные уязвимости

CVSS3: 7.6
nvd
больше 3 лет назад

The authentication mechanism used by poll workers to administer voting using the tested version of Dominion Voting Systems ImageCast X can expose cryptographic secrets used to protect election information. An attacker could leverage this vulnerability to gain access to sensitive information and perform privileged actions, potentially affecting other election equipment.

CVSS3: 6.6
fstec
больше 3 лет назад

Уязвимость механизм аутентификации для администраторов программного обеспечения устройства для маркировки бюллетеней ImageCast X, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 13%
0.00043
Низкий

7.6 High

CVSS3

Дефекты

CWE-266
CWE-269
CWE-863