Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hmhr-xf6m-r87c

Опубликовано: 26 мар. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.8

Описание

Dell Grab for Windows, versions 5.0.4 and below, contains a cleartext storage of sensitive information vulnerability in its appsync module. An authenticated local attacker could potentially exploit this vulnerability, leading to information disclosure that could be used to access the appsync application with elevated privileges.

Dell Grab for Windows, versions 5.0.4 and below, contains a cleartext storage of sensitive information vulnerability in its appsync module. An authenticated local attacker could potentially exploit this vulnerability, leading to information disclosure that could be used to access the appsync application with elevated privileges.

EPSS

Процентиль: 19%
0.00062
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-532

Связанные уязвимости

CVSS3: 4.8
nvd
почти 2 года назад

Dell Grab for Windows, versions 5.0.4 and below, contains a cleartext storage of sensitive information vulnerability in its appsync module. An authenticated local attacker could potentially exploit this vulnerability, leading to information disclosure that could be used to access the appsync application with elevated privileges.

EPSS

Процентиль: 19%
0.00062
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-532