Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qmjc-jmj7-3fwx

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

Information Disclosure is possible on WAGO Series PFC100 and PFC200 devices before FW12 due to improper access control. A remote attacker can check for the existence of paths and file names via crafted HTTP requests.

Information Disclosure is possible on WAGO Series PFC100 and PFC200 devices before FW12 due to improper access control. A remote attacker can check for the existence of paths and file names via crafted HTTP requests.

EPSS

Процентиль: 70%
0.00636
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-610

Связанные уязвимости

CVSS3: 5.3
nvd
больше 6 лет назад

Information Disclosure is possible on WAGO Series PFC100 and PFC200 devices before FW12 due to improper access control. A remote attacker can check for the existence of paths and file names via crafted HTTP requests.

EPSS

Процентиль: 70%
0.00636
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-610