Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m7v3-p7g2-xh6x

Опубликовано: 28 мая 2026
Источник: github
Github: Не прошло ревью
CVSS4: 9.3

Описание

The Mennekes Amtron series (firmware versions ≤ 5.22.3) is vulnerable to an authentication bypass. An unauthenticated remote attacker can change the password of the user account via a crafted POST request to the /operator/operator endpoint.

The Mennekes Amtron series (firmware versions ≤ 5.22.3) is vulnerable to an authentication bypass. An unauthenticated remote attacker can change the password of the user account via a crafted POST request to the /operator/operator endpoint.

EPSS

Процентиль: 46%
0.00612
Низкий

9.3 Critical

CVSS4

Дефекты

CWE-287

Связанные уязвимости

nvd
2 месяца назад

The Mennekes Amtron series (firmware versions ≤ 5.22.3) is vulnerable to an authentication bypass. An unauthenticated remote attacker can change the password of the user account via a crafted POST request to the /operator/operator endpoint.

EPSS

Процентиль: 46%
0.00612
Низкий

9.3 Critical

CVSS4

Дефекты

CWE-287