Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pxpq-hvq2-x6wx

Опубликовано: 10 дек. 2021
Источник: github
Github: Не прошло ревью

Описание

An unprotected ssh private key exists on the Gryphon devices which could be used to achieve root access to a server affiliated with Gryphon's development and infrastructure. At the time of discovery, the ssh key could be used to login to the development server hosted in Amazon Web Services.

An unprotected ssh private key exists on the Gryphon devices which could be used to achieve root access to a server affiliated with Gryphon's development and infrastructure. At the time of discovery, the ssh key could be used to login to the development server hosted in Amazon Web Services.

EPSS

Процентиль: 81%
0.01493
Низкий

Дефекты

CWE-522

Связанные уязвимости

CVSS3: 9.8
nvd
около 4 лет назад

An unprotected ssh private key exists on the Gryphon devices which could be used to achieve root access to a server affiliated with Gryphon's development and infrastructure. At the time of discovery, the ssh key could be used to login to the development server hosted in Amazon Web Services.

EPSS

Процентиль: 81%
0.01493
Низкий

Дефекты

CWE-522