Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hjwr-h73m-h7pf

Опубликовано: 24 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 6.8
CVSS3: 6.2

Описание

Beward Intercom 2.3.1 contains a credentials disclosure vulnerability that allows local attackers to access plain-text authentication credentials stored in an unencrypted database file. Attackers can read the BEWARD.INTERCOM.FDB file to extract usernames and passwords, enabling unauthorized access to IP cameras and door stations.

Beward Intercom 2.3.1 contains a credentials disclosure vulnerability that allows local attackers to access plain-text authentication credentials stored in an unencrypted database file. Attackers can read the BEWARD.INTERCOM.FDB file to extract usernames and passwords, enabling unauthorized access to IP cameras and door stations.

EPSS

Процентиль: 6%
0.00023
Низкий

6.8 Medium

CVSS4

6.2 Medium

CVSS3

Дефекты

CWE-256

Связанные уязвимости

CVSS3: 6.2
nvd
около 2 месяцев назад

Beward Intercom 2.3.1 contains a credentials disclosure vulnerability that allows local attackers to access plain-text authentication credentials stored in an unencrypted database file. Attackers can read the BEWARD.INTERCOM.FDB file to extract usernames and passwords, enabling unauthorized access to IP cameras and door stations.

EPSS

Процентиль: 6%
0.00023
Низкий

6.8 Medium

CVSS4

6.2 Medium

CVSS3

Дефекты

CWE-256