Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gwr5-jm6x-gfh6

Опубликовано: 08 янв. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 9.1

Описание

In default installations of Microchip maxView Storage Manager (for Adaptec Smart Storage Controllers) where Redfish server is configured for remote system management, unauthorized access can occur, with data modification and information disclosure. This affects 3.00.23484 through 4.14.00.26064 (except for the patched versions 3.07.23980 and 4.07.00.25339).

In default installations of Microchip maxView Storage Manager (for Adaptec Smart Storage Controllers) where Redfish server is configured for remote system management, unauthorized access can occur, with data modification and information disclosure. This affects 3.00.23484 through 4.14.00.26064 (except for the patched versions 3.07.23980 and 4.07.00.25339).

EPSS

Процентиль: 60%
0.00401
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 10
nvd
около 2 лет назад

In default installations of Microchip maxView Storage Manager (for Adaptec Smart Storage Controllers) where Redfish server is configured for remote system management, unauthorized access can occur, with data modification and information disclosure. This affects 3.00.23484 through 4.14.00.26064 (except for the patched versions 3.07.23980 and 4.07.00.25339).

CVSS3: 9.1
fstec
около 2 лет назад

Уязвимость сервера Redfish менеджера хранения maxView Storage Manager, позволяющая нарушителю получить несанкционированный доступ к устройству

EPSS

Процентиль: 60%
0.00401
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-284