Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h568-qr59-9xpj

Опубликовано: 26 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 4

Описание

Tomahawk auth timing attack due to usage of strcmp has been identified in Hiawatha webserver version 11.7 which allows a local attacker to access the management client.

Tomahawk auth timing attack due to usage of strcmp has been identified in Hiawatha webserver version 11.7 which allows a local attacker to access the management client.

EPSS

Процентиль: 1%
0.00012
Низкий

4 Medium

CVSS3

Связанные уязвимости

CVSS3: 4
nvd
12 дней назад

Tomahawk auth timing attack due to usage of `strcmp` has been identified in Hiawatha webserver version 11.7 which allows a local attacker to access the management client.

CVSS3: 4
debian
12 дней назад

Tomahawk auth timing attack due to usage of `strcmp` has been identifi ...

EPSS

Процентиль: 1%
0.00012
Низкий

4 Medium

CVSS3