Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-frff-9f6h-44cx

Опубликовано: 11 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 0.6
CVSS3: 8.1

Описание

A use of externally-controlled format string vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, they can then exploit the vulnerability to obtain secret data or modify memory.

We have already fixed the vulnerability in the following version: Qsync Central 5.0.0.4 ( 2026/01/20 ) and later

A use of externally-controlled format string vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, they can then exploit the vulnerability to obtain secret data or modify memory.

We have already fixed the vulnerability in the following version: Qsync Central 5.0.0.4 ( 2026/01/20 ) and later

EPSS

Процентиль: 20%
0.0028
Низкий

0.6 Low

CVSS4

8.1 High

CVSS3

Дефекты

CWE-134

Связанные уязвимости

CVSS3: 8.1
nvd
4 месяца назад

A use of externally-controlled format string vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, they can then exploit the vulnerability to obtain secret data or modify memory. We have already fixed the vulnerability in the following version: Qsync Central 5.0.0.4 ( 2026/01/20 ) and later

EPSS

Процентиль: 20%
0.0028
Низкий

0.6 Low

CVSS4

8.1 High

CVSS3

Дефекты

CWE-134