Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mg8p-r739-mwgq

Опубликовано: 22 июл. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

The NI VeriStand Gateway is missing authorization checks when an actor attempts to access File Transfer resources. These missing checks may result in information disclosure or remote code execution. This affects NI VeriStand 2024 Q2 and prior versions.

The NI VeriStand Gateway is missing authorization checks when an actor attempts to access File Transfer resources. These missing checks may result in information disclosure or remote code execution. This affects NI VeriStand 2024 Q2 and prior versions.

EPSS

Процентиль: 81%
0.0154
Низкий

7.5 High

CVSS3

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 7.5
nvd
больше 1 года назад

The NI VeriStand Gateway is missing authorization checks when an actor attempts to access File Transfer resources. These missing checks may result in information disclosure or remote code execution. This affects NI VeriStand 2024 Q2 and prior versions.

EPSS

Процентиль: 81%
0.0154
Низкий

7.5 High

CVSS3

Дефекты

CWE-862