Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jrp2-pgjj-vwpm

Опубликовано: 12 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 4
CVSS3: 6

Описание

CWE-532: Insertion of Sensitive Information into Log Files vulnerability exists that could cause the disclosure of FTP server credentials when the FTP server is deployed, and the device is placed in debug mode by an administrative user and the debug files are exported from the device.

CWE-532: Insertion of Sensitive Information into Log Files vulnerability exists that could cause the disclosure of FTP server credentials when the FTP server is deployed, and the device is placed in debug mode by an administrative user and the debug files are exported from the device.

EPSS

Процентиль: 6%
0.00162
Низкий

4 Medium

CVSS4

6 Medium

CVSS3

Дефекты

CWE-532

Связанные уязвимости

CVSS3: 6
nvd
больше 1 года назад

CWE-532: Insertion of Sensitive Information into Log Files vulnerability exists that could cause the disclosure of FTP server credentials when the FTP server is deployed, and the device is placed in debug mode by an administrative user and the debug files are exported from the device.

CVSS3: 6
fstec
больше 1 года назад

Уязвимость модульного шлюза EcoStruxure Panel Server, связанная с раскрытием значения пароля в файле журнала, позволяющая нарушителю раскрыть защищаемую информацию

EPSS

Процентиль: 6%
0.00162
Низкий

4 Medium

CVSS4

6 Medium

CVSS3

Дефекты

CWE-532