Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gqm3-6h45-q66x

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

Autogalaxy stores usernames and passwords in cleartext in cookies, which makes it easier for remote attackers to obtain authentication information and gain unauthorized access via sniffing or a cross-site scripting attack.

Autogalaxy stores usernames and passwords in cleartext in cookies, which makes it easier for remote attackers to obtain authentication information and gain unauthorized access via sniffing or a cross-site scripting attack.

EPSS

Процентиль: 72%
0.00765
Низкий

7.5 High

CVSS3

Дефекты

CWE-312

Связанные уязвимости

CVSS3: 7.5
nvd
больше 23 лет назад

Autogalaxy stores usernames and passwords in cleartext in cookies, which makes it easier for remote attackers to obtain authentication information and gain unauthorized access via sniffing or a cross-site scripting attack.

EPSS

Процентиль: 72%
0.00765
Низкий

7.5 High

CVSS3

Дефекты

CWE-312