Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h7vf-8q5x-gvc3

Опубликовано: 26 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 2.1

Описание

Password Confirmation Bypass vulnerability in Omada Controllers, allowing an attacker with a valid session token to bypass secondary verification, and change the user’s password without proper confirmation, leading to weakened account security.

Password Confirmation Bypass vulnerability in Omada Controllers, allowing an attacker with a valid session token to bypass secondary verification, and change the user’s password without proper confirmation, leading to weakened account security.

EPSS

Процентиль: 14%
0.00047
Низкий

2.1 Low

CVSS4

Дефекты

CWE-522

Связанные уязвимости

nvd
12 дней назад

Password Confirmation Bypass vulnerability in Omada Controllers, allowing an attacker with a valid session token to bypass secondary verification, and change the user’s password without proper confirmation, leading to weakened account security.

EPSS

Процентиль: 14%
0.00047
Низкий

2.1 Low

CVSS4

Дефекты

CWE-522