Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pc9h-2fg4-m4v8

Опубликовано: 14 июн. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.1

Описание

It appears that some hardcoded keys are used for authentication to internal API. Knowing these private keys may allow attackers to bypass authentication and reach administrative interfaces. As for the affected products/models/versions, see the reference URL.

It appears that some hardcoded keys are used for authentication to internal API. Knowing these private keys may allow attackers to bypass authentication and reach administrative interfaces. As for the affected products/models/versions, see the reference URL.

EPSS

Процентиль: 7%
0.00028
Низкий

7.1 High

CVSS3

Дефекты

CWE-798

Связанные уязвимости

CVSS3: 7.1
nvd
больше 1 года назад

It appears that some hardcoded keys are used for authentication to internal API. Knowing these private keys may allow attackers to bypass authentication and reach administrative interfaces. As for the affected products/models/versions, see the reference URL.

EPSS

Процентиль: 7%
0.00028
Низкий

7.1 High

CVSS3

Дефекты

CWE-798