Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mhj6-rxgc-8472

Опубликовано: 14 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.4

Описание

A security issue exists within the FactoryTalk Linx Network Browser. By modifying the process.env.NODE_ENV to ‘development’, the attacker can disable FTSP token validation. This bypass allows access to create, update, and delete FTLinx drivers.

A security issue exists within the FactoryTalk Linx Network Browser. By modifying the process.env.NODE_ENV to ‘development’, the attacker can disable FTSP token validation. This bypass allows access to create, update, and delete FTLinx drivers.

EPSS

Процентиль: 3%
0.00018
Низкий

8.4 High

CVSS4

Дефекты

CWE-286

Связанные уязвимости

nvd
около 1 месяца назад

A security issue exists within the FactoryTalk Linx Network Browser. By modifying the process.env.NODE_ENV to ‘development’, the attacker can disable FTSP token validation. This bypass allows access to create, update, and delete FTLinx drivers.

EPSS

Процентиль: 3%
0.00018
Низкий

8.4 High

CVSS4

Дефекты

CWE-286