Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hwqv-hx2f-fwhv

Опубликовано: 17 авг. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

upsMonitor in ViewPower (aka ViewPowerHTML) 1.04-21012 through 1.04-21353 has insecure permissions for the service binary that enable an Authenticated User to modify files, allowing for privilege escalation.

upsMonitor in ViewPower (aka ViewPowerHTML) 1.04-21012 through 1.04-21353 has insecure permissions for the service binary that enable an Authenticated User to modify files, allowing for privilege escalation.

EPSS

Процентиль: 10%
0.00034
Низкий

7.8 High

CVSS3

Дефекты

CWE-276

Связанные уязвимости

CVSS3: 7.8
nvd
больше 3 лет назад

upsMonitor in ViewPower (aka ViewPowerHTML) 1.04-21012 through 1.04-21353 has insecure permissions for the service binary that enable an Authenticated User to modify files, allowing for privilege escalation.

EPSS

Процентиль: 10%
0.00034
Низкий

7.8 High

CVSS3

Дефекты

CWE-276