Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mfqx-wfm8-g2h8

Опубликовано: 05 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

A misconfiguration in Alphion ASEE-1443 Firmware v0.4.H.00.02.15 defines a previously unregistered domain name as the default DNS suffix. This allows attackers to register the unclaimed domain and point its wildcard DNS entry to an attacker-controlled IP address, making it possible to access sensitive information.

A misconfiguration in Alphion ASEE-1443 Firmware v0.4.H.00.02.15 defines a previously unregistered domain name as the default DNS suffix. This allows attackers to register the unclaimed domain and point its wildcard DNS entry to an attacker-controlled IP address, making it possible to access sensitive information.

EPSS

Процентиль: 31%
0.00118
Низкий

8.1 High

CVSS3

Связанные уязвимости

CVSS3: 8.1
nvd
11 месяцев назад

A misconfiguration in Alphion ASEE-1443 Firmware v0.4.H.00.02.15 defines a previously unregistered domain name as the default DNS suffix. This allows attackers to register the unclaimed domain and point its wildcard DNS entry to an attacker-controlled IP address, making it possible to access sensitive information.

EPSS

Процентиль: 31%
0.00118
Низкий

8.1 High

CVSS3