Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j2j9-pq33-wj97

Опубликовано: 06 июл. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 contains hard-coded passwords for select users in the application’s database. This could allow a remote attacker to login to the database with unrestricted access.

Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 contains hard-coded passwords for select users in the application’s database. This could allow a remote attacker to login to the database with unrestricted access.

EPSS

Процентиль: 68%
0.00566
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-259
CWE-798

Связанные уязвимости

CVSS3: 10
nvd
около 3 лет назад

Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 contains hard-coded passwords for select users in the application’s database. This could allow a remote attacker to login to the database with unrestricted access.

EPSS

Процентиль: 68%
0.00566
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-259
CWE-798