Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mpx7-3w53-g6r5

Опубликовано: 14 фев. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

CWE-924: Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability exists that could cause a denial of service and loss of confidentiality, integrity of controllers when conducting a Man in the Middle attack.

CWE-924: Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability exists that could cause a denial of service and loss of confidentiality, integrity of controllers when conducting a Man in the Middle attack.

EPSS

Процентиль: 41%
0.0019
Низкий

8.1 High

CVSS3

Дефекты

CWE-924

Связанные уязвимости

CVSS3: 8.1
nvd
почти 2 года назад

CWE-924: Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability exists that could cause a denial of service and loss of confidentiality, integrity of controllers when conducting a Man in the Middle attack.

CVSS3: 8.1
fstec
почти 2 года назад

Уязвимость микропрограммного обеспечения программируемых логических контроллеров (ПЛК) Schneider Electric Modicon M340 CPU BMXP34, M580 CPU BMEP, M580 CPU BMEH, M580 CPU Safety BMEP58*S, M580 CPU Safety BMEH58*S, программных средств программирования ПЛК EcoStruxure Control Expert и EcoStruxure Process Expert, позволяющая нарушителю реализовать атаку «человек посередине»

EPSS

Процентиль: 41%
0.0019
Низкий

8.1 High

CVSS3

Дефекты

CWE-924