Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mfc7-3m73-fjf3

Опубликовано: 12 нояб. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 9.1
CVSS3: 9.1

Описание

An authentication bypass vulnerability exists in the affected product. The vulnerability exists due to shared secrets across accounts and could allow a threat actor to impersonate a user if the threat actor is able to enumerate additional information required during authentication.

An authentication bypass vulnerability exists in the affected product. The vulnerability exists due to shared secrets across accounts and could allow a threat actor to impersonate a user if the threat actor is able to enumerate additional information required during authentication.

EPSS

Процентиль: 21%
0.00068
Низкий

9.1 Critical

CVSS4

9.1 Critical

CVSS3

Дефекты

CWE-922

Связанные уязвимости

CVSS3: 9.1
nvd
около 1 года назад

An authentication bypass vulnerability exists in the affected product. The vulnerability exists due to shared secrets across accounts and could allow a threat actor to impersonate a user if the threat actor is able to enumerate additional information required during authentication.

EPSS

Процентиль: 21%
0.00068
Низкий

9.1 Critical

CVSS4

9.1 Critical

CVSS3

Дефекты

CWE-922