Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gh74-f566-4j95

Опубликовано: 28 авг. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 9.1

Описание

Saho’s attendance devices ADM100 and ADM-100FP have insufficient authentication. An unauthenticated remote attacker can exploit this vulnerability to bypass authentication to read system information and operate user's data, but can’t control system or disrupt service.

Saho’s attendance devices ADM100 and ADM-100FP have insufficient authentication. An unauthenticated remote attacker can exploit this vulnerability to bypass authentication to read system information and operate user's data, but can’t control system or disrupt service.

EPSS

Процентиль: 22%
0.00074
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-306

Связанные уязвимости

CVSS3: 9.1
nvd
больше 2 лет назад

Saho’s attendance devices ADM100 and ADM-100FP have insufficient authentication. An unauthenticated remote attacker can exploit this vulnerability to bypass authentication to read system information and operate user's data, but can’t control system or disrupt service.

EPSS

Процентиль: 22%
0.00074
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-306