Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j379-3r55-f3wq

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

/way4acs/enroll in OpenWay WAY4 ACS before 1.2.278-2693 allows unauthenticated attackers to leverage response differences to discover whether a specific payment card number is stored in the system.

/way4acs/enroll in OpenWay WAY4 ACS before 1.2.278-2693 allows unauthenticated attackers to leverage response differences to discover whether a specific payment card number is stored in the system.

EPSS

Процентиль: 55%
0.00319
Низкий

Дефекты

CWE-209

Связанные уязвимости

CVSS3: 5.3
nvd
больше 4 лет назад

/way4acs/enroll in OpenWay WAY4 ACS before 1.2.278-2693 allows unauthenticated attackers to leverage response differences to discover whether a specific payment card number is stored in the system.

EPSS

Процентиль: 55%
0.00319
Низкий

Дефекты

CWE-209