Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mc3m-jxj9-pp7c

Опубликовано: 31 июл. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 9.4

Описание

When the device is shared, the homepage module are before 2.19.0  in eWeLink Cloud Service allows Secondary user to take over devices as primary user via sharing unnecessary device-sensitive information.

When the device is shared, the homepage module are before 2.19.0  in eWeLink Cloud Service allows Secondary user to take over devices as primary user via sharing unnecessary device-sensitive information.

EPSS

Процентиль: 42%
0.00201
Низкий

9.4 Critical

CVSS4

Дефекты

CWE-201

Связанные уязвимости

nvd
больше 1 года назад

When the device is shared, the homepage module are before 2.19.0  in eWeLink Cloud Service allows Secondary user to take over devices as primary user via sharing unnecessary device-sensitive information.

EPSS

Процентиль: 42%
0.00201
Низкий

9.4 Critical

CVSS4

Дефекты

CWE-201