Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hjxg-73cp-h6jp

Опубликовано: 20 авг. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

Emerson Electric's Proficy Machine Edition Version 9.00 and prior is vulenrable to CWE-353 Missing Support for Integrity Check, and has no authentication or authorization of data packets after establishing a connection for the SRTP protocol.

Emerson Electric's Proficy Machine Edition Version 9.00 and prior is vulenrable to CWE-353 Missing Support for Integrity Check, and has no authentication or authorization of data packets after establishing a connection for the SRTP protocol.

EPSS

Процентиль: 5%
0.00021
Низкий

7.8 High

CVSS3

Дефекты

CWE-345
CWE-353

Связанные уязвимости

CVSS3: 5.9
nvd
больше 3 лет назад

Emerson Electric's Proficy Machine Edition Version 9.00 and prior is vulenrable to CWE-353 Missing Support for Integrity Check, and has no authentication or authorization of data packets after establishing a connection for the SRTP protocol.

EPSS

Процентиль: 5%
0.00021
Низкий

7.8 High

CVSS3

Дефекты

CWE-345
CWE-353