Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qfm4-frr3-p3ph

Опубликовано: 03 июн. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

An improper removal of sensitive information before storage or transfer vulnerability [CWE-212] in FortiSOAR version 7.3.0, version 7.2.2 and below, version 7.0.3 and below may allow an authenticated low privileged user to read Connector passwords in plain-text via HTTP responses.

An improper removal of sensitive information before storage or transfer vulnerability [CWE-212] in FortiSOAR version 7.3.0, version 7.2.2 and below, version 7.0.3 and below may allow an authenticated low privileged user to read Connector passwords in plain-text via HTTP responses.

EPSS

Процентиль: 64%
0.00465
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-212

Связанные уязвимости

CVSS3: 6.5
nvd
больше 1 года назад

An improper removal of sensitive information before storage or transfer vulnerability [CWE-212] in FortiSOAR version 7.3.0, version 7.2.2 and below, version 7.0.3 and below may allow an authenticated low privileged user to read Connector passwords in plain-text via HTTP responses.

EPSS

Процентиль: 64%
0.00465
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-212