Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pf27-23g4-7wjj

Опубликовано: 04 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

Maharashtra State Electricity Distribution Company Limited Mahavitran IOS Application 16.1 application till version 16.1 communicates using the GET method to process requests that contain sensitive information such as user account name and password, which can expose that information through the browser's history, referrers, web logs, and other sources.

Maharashtra State Electricity Distribution Company Limited Mahavitran IOS Application 16.1 application till version 16.1 communicates using the GET method to process requests that contain sensitive information such as user account name and password, which can expose that information through the browser's history, referrers, web logs, and other sources.

EPSS

Процентиль: 33%
0.00131
Низкий

7.5 High

CVSS3

Дефекты

CWE-598

Связанные уязвимости

CVSS3: 7.5
nvd
11 месяцев назад

Maharashtra State Electricity Distribution Company Limited Mahavitran IOS Application 16.1 application till version 16.1 communicates using the GET method to process requests that contain sensitive information such as user account name and password, which can expose that information through the browser's history, referrers, web logs, and other sources.

EPSS

Процентиль: 33%
0.00131
Низкий

7.5 High

CVSS3

Дефекты

CWE-598