Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p7qf-9c5q-fw2w

Опубликовано: 08 апр. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 5.4
CVSS3: 6.7

Описание

A vulnerability has been identified in Siemens License Server (SLS) (All versions < V4.3). The affected application does not properly restrict permissions of the users. This could allow a lowly-privileged attacker to escalate their privileges.

A vulnerability has been identified in Siemens License Server (SLS) (All versions < V4.3). The affected application does not properly restrict permissions of the users. This could allow a lowly-privileged attacker to escalate their privileges.

EPSS

Процентиль: 14%
0.00046
Низкий

5.4 Medium

CVSS4

6.7 Medium

CVSS3

Дефекты

CWE-295

Связанные уязвимости

CVSS3: 6.7
nvd
10 месяцев назад

A vulnerability has been identified in Siemens License Server (SLS) (All versions < V4.3). The affected application does not properly restrict permissions of the users. This could allow a lowly-privileged attacker to escalate their privileges.

CVSS3: 6.7
fstec
10 месяцев назад

Уязвимость программного средства управления лицензиями Siemens License Server (SLS), связанная с ошибками процедуры подтверждения подлинности сертификата, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 14%
0.00046
Низкий

5.4 Medium

CVSS4

6.7 Medium

CVSS3

Дефекты

CWE-295