Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q9rr-9m3c-3r79

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

Automox Agent prior to version 31 uses an insufficiently protected S3 bucket endpoint for storing sensitive files, which could be brute-forced by an attacker to subvert an organization's security program. The issue has since been fixed in version 31 of the Automox Agent.

Automox Agent prior to version 31 uses an insufficiently protected S3 bucket endpoint for storing sensitive files, which could be brute-forced by an attacker to subvert an organization's security program. The issue has since been fixed in version 31 of the Automox Agent.

EPSS

Процентиль: 42%
0.00203
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-269
CWE-330

Связанные уязвимости

CVSS3: 3.7
nvd
почти 5 лет назад

Automox Agent prior to version 31 uses an insufficiently protected S3 bucket endpoint for storing sensitive files, which could be brute-forced by an attacker to subvert an organization's security program. The issue has since been fixed in version 31 of the Automox Agent.

EPSS

Процентиль: 42%
0.00203
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-269
CWE-330