Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m48c-2qvg-rh53

Опубликовано: 26 дек. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

Dell ECS, versions prior to 3.8.1.3 contains an arithmetic overflow vulnerability exists in retention period handling of ECS. An authenticated user with bucket or object-level access and the necessary privileges could potentially exploit this vulnerability to bypass retention policies and delete objects.

Dell ECS, versions prior to 3.8.1.3 contains an arithmetic overflow vulnerability exists in retention period handling of ECS. An authenticated user with bucket or object-level access and the necessary privileges could potentially exploit this vulnerability to bypass retention policies and delete objects.

EPSS

Процентиль: 19%
0.0006
Низкий

8.1 High

CVSS3

Дефекты

CWE-190

Связанные уязвимости

CVSS3: 8.1
nvd
около 1 года назад

Dell ECS, versions prior to 3.8.1.3 contains an arithmetic overflow vulnerability exists in retention period handling of ECS. An authenticated user with bucket or object-level access and the necessary privileges could potentially exploit this vulnerability to bypass retention policies and delete objects.

EPSS

Процентиль: 19%
0.0006
Низкий

8.1 High

CVSS3

Дефекты

CWE-190