Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mfpx-cx7p-6jc6

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

HashiCorp Vault Enterprise 0.9.2 through 1.6.2 allowed the read of license metadata from DR secondaries without authentication. Fixed in 1.6.3.

HashiCorp Vault Enterprise 0.9.2 through 1.6.2 allowed the read of license metadata from DR secondaries without authentication. Fixed in 1.6.3.

EPSS

Процентиль: 61%
0.01043
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-287
CWE-306

Связанные уязвимости

CVSS3: 5.3
redhat
около 5 лет назад

HashiCorp Vault Enterprise 0.9.2 through 1.6.2 allowed the read of license metadata from DR secondaries without authentication. Fixed in 1.6.3.

CVSS3: 5.3
nvd
около 5 лет назад

HashiCorp Vault Enterprise 0.9.2 through 1.6.2 allowed the read of license metadata from DR secondaries without authentication. Fixed in 1.6.3.

EPSS

Процентиль: 61%
0.01043
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-287
CWE-306