Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gm83-48r5-335w

Опубликовано: 22 дек. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where unauthenticated users could open PHP index pages without authentication and download the history file from the device; the history file includes the latest actions completed by specific users.

Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where unauthenticated users could open PHP index pages without authentication and download the history file from the device; the history file includes the latest actions completed by specific users.

EPSS

Процентиль: 37%
0.00157
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-306
CWE-863

Связанные уязвимости

CVSS3: 5.3
nvd
около 3 лет назад

Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where unauthenticated users could open PHP index pages without authentication and download the history file from the device; the history file includes the latest actions completed by specific users.

EPSS

Процентиль: 37%
0.00157
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-306
CWE-863