Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gh8q-x6gx-v2ff

Опубликовано: 11 нояб. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.5
CVSS3: 7.8

Описание

A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP12 Update 2). The affected application is vulnerable to a local privilege escalation due to an exposed debug interface on the localhost. This allows any local user to gain code execution as administrative application user.

A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP12 Update 2). The affected application is vulnerable to a local privilege escalation due to an exposed debug interface on the localhost. This allows any local user to gain code execution as administrative application user.

EPSS

Процентиль: 3%
0.00017
Низкий

8.5 High

CVSS4

7.8 High

CVSS3

Дефекты

CWE-648

Связанные уязвимости

CVSS3: 7.8
nvd
3 месяца назад

A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP12 Update 2). The affected application is vulnerable to a local privilege escalation due to an exposed debug interface on the localhost. This allows any local user to gain code execution as administrative application user.

CVSS3: 7.8
fstec
3 месяца назад

Уязвимость debug-интерфейса программного обеспечения Spectrum Power 4, позволяющая нарушителю повысить свои привилегии и выполнить произвольный код

EPSS

Процентиль: 3%
0.00017
Низкий

8.5 High

CVSS4

7.8 High

CVSS3

Дефекты

CWE-648