Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mfph-p7r3-jvfm

Опубликовано: 09 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 5.3
CVSS3: 6.3

Описание

A vulnerability has been identified in Gridscale X Prepay (All versions < V4.2.1). The affected application is vulnerable to capture-replay of authentication tokens. This could allow an authenticated but already locked-out user to establish still valid user sessions.

A vulnerability has been identified in Gridscale X Prepay (All versions < V4.2.1). The affected application is vulnerable to capture-replay of authentication tokens. This could allow an authenticated but already locked-out user to establish still valid user sessions.

EPSS

Процентиль: 13%
0.00043
Низкий

5.3 Medium

CVSS4

6.3 Medium

CVSS3

Дефекты

CWE-294

Связанные уязвимости

CVSS3: 6.3
nvd
2 месяца назад

A vulnerability has been identified in Gridscale X Prepay (All versions < V4.2.1). The affected application is vulnerable to capture-replay of authentication tokens. This could allow an authenticated but already locked-out user to establish still valid user sessions.

CVSS3: 6.3
fstec
2 месяца назад

Уязвимость программного обеспечения Gridscale X Prepay, связанная с возможностью обхода процедуры аутентификации, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 13%
0.00043
Низкий

5.3 Medium

CVSS4

6.3 Medium

CVSS3

Дефекты

CWE-294