Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hg9x-8q33-pg7f

Опубликовано: 07 апр. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 7.7

Описание

The IntelliSpace portal application utilizes .NET Remoting for its functionality. The vulnerability arises from the exploitation of port 755 through the "Object Marshalling" technique, which allows an attacker to read internal files without any authentication. This is possible by crafting specific .NET Remoting URLs derived from information enumerated in the client-side configuration files.

This issue affects IntelliSpace Portal: 12 and prior.

The IntelliSpace portal application utilizes .NET Remoting for its functionality. The vulnerability arises from the exploitation of port 755 through the "Object Marshalling" technique, which allows an attacker to read internal files without any authentication. This is possible by crafting specific .NET Remoting URLs derived from information enumerated in the client-side configuration files.

This issue affects IntelliSpace Portal: 12 and prior.

EPSS

Процентиль: 36%
0.00149
Низкий

7.7 High

CVSS4

Дефекты

CWE-22

Связанные уязвимости

nvd
10 месяцев назад

The IntelliSpace portal application utilizes .NET Remoting for its functionality. The vulnerability arises from the exploitation of port 755 through the "Object Marshalling" technique, which allows an attacker to read internal files without any authentication. This is possible by crafting specific .NET Remoting URLs derived from information enumerated in the client-side configuration files. This issue affects IntelliSpace Portal: 12 and prior.

EPSS

Процентиль: 36%
0.00149
Низкий

7.7 High

CVSS4

Дефекты

CWE-22