Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h568-qr59-9xpj

Опубликовано: 26 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 4

Описание

Tomahawk auth timing attack due to usage of strcmp has been identified in Hiawatha webserver version 11.7 which allows a local attacker to access the management client.

Tomahawk auth timing attack due to usage of strcmp has been identified in Hiawatha webserver version 11.7 which allows a local attacker to access the management client.

EPSS

Процентиль: 5%
0.00154
Низкий

4 Medium

CVSS3

Связанные уязвимости

CVSS3: 3.3
nvd
7 месяцев назад

Tomahawk auth timing attack due to usage of `strcmp` has been identified in Hiawatha webserver version 11.7 which allows a local attacker to access the management client.

CVSS3: 3.3
debian
7 месяцев назад

Tomahawk auth timing attack due to usage of `strcmp` has been identifi ...

EPSS

Процентиль: 5%
0.00154
Низкий

4 Medium

CVSS3