Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h932-r8mq-2ccg

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The Java Glassfish Admin Console in HP Executive Scorecard 9.40 and 9.41 does not require authentication, which allows remote attackers to execute arbitrary code via a session on TCP port 10001, aka ZDI-CAN-2116.

The Java Glassfish Admin Console in HP Executive Scorecard 9.40 and 9.41 does not require authentication, which allows remote attackers to execute arbitrary code via a session on TCP port 10001, aka ZDI-CAN-2116.

EPSS

Процентиль: 96%
0.25048
Средний

Дефекты

CWE-287

Связанные уязвимости

nvd
больше 11 лет назад

The Java Glassfish Admin Console in HP Executive Scorecard 9.40 and 9.41 does not require authentication, which allows remote attackers to execute arbitrary code via a session on TCP port 10001, aka ZDI-CAN-2116.

EPSS

Процентиль: 96%
0.25048
Средний

Дефекты

CWE-287