Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h3fg-24xh-363p

Опубликовано: 06 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

Incorrect access control in Sage DPW v2024.12.003 allows unauthorized attackers to access the built-in Database Monitor via a crafted request. This is fixed in Halbjahresversion 2024_12_004.

Incorrect access control in Sage DPW v2024.12.003 allows unauthorized attackers to access the built-in Database Monitor via a crafted request. This is fixed in Halbjahresversion 2024_12_004.

EPSS

Процентиль: 18%
0.00057
Низкий

7.5 High

CVSS3

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 7.5
nvd
6 месяцев назад

Incorrect access control in Sage DPW 2024_12_004 and earlier allows unauthorized attackers to access the built-in Database Monitor via a crafted request. The vendor has stated that the issue is fixed in 2025_06_000, released in June 2025.

EPSS

Процентиль: 18%
0.00057
Низкий

7.5 High

CVSS3

Дефекты

CWE-284