Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q772-ppcv-m7pf

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A CWE-319: Cleartext transmission of sensitive information vulnerability exists in PowerLogic ION7400, ION7650, ION83xx/84xx/85xx/8600, ION8650, ION8800, ION9000 and PM800 (see notification for affected versions), that could cause disclosure of user credentials when a malicious actor intercepts HTTP network traffic between a user and the device.

A CWE-319: Cleartext transmission of sensitive information vulnerability exists in PowerLogic ION7400, ION7650, ION83xx/84xx/85xx/8600, ION8650, ION8800, ION9000 and PM800 (see notification for affected versions), that could cause disclosure of user credentials when a malicious actor intercepts HTTP network traffic between a user and the device.

EPSS

Процентиль: 44%
0.00216
Низкий

Дефекты

CWE-319

Связанные уязвимости

CVSS3: 7.5
nvd
почти 5 лет назад

A CWE-319: Cleartext transmission of sensitive information vulnerability exists in PowerLogic ION7400, ION7650, ION83xx/84xx/85xx/8600, ION8650, ION8800, ION9000 and PM800 (see notification for affected versions), that could cause disclosure of user credentials when a malicious actor intercepts HTTP network traffic between a user and the device.

EPSS

Процентиль: 44%
0.00216
Низкий

Дефекты

CWE-319