Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h8vm-65gc-gw46

Опубликовано: 25 сент. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

IBM Storage Defender 2.0.0 through 2.0.7 on-prem defender-sensor-cmd CLI does not validate server name during registration and unregistration operations which could expose sensitive information to an attacker with access to the system.

IBM Storage Defender 2.0.0 through 2.0.7 on-prem defender-sensor-cmd CLI does not validate server name during registration and unregistration operations which could expose sensitive information to an attacker with access to the system.

EPSS

Процентиль: 12%
0.00042
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-295
CWE-297

Связанные уязвимости

CVSS3: 5.9
nvd
больше 1 года назад

IBM Storage Defender 2.0.0 through 2.0.7 on-prem defender-sensor-cmd CLI does not validate server name during registration and unregistration operations which could expose sensitive information to an attacker with access to the system.

EPSS

Процентиль: 12%
0.00042
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-295
CWE-297