Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qph7-xc8r-fqmj

Опубликовано: 02 мая 2025
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Digigram's PYKO-OUT audio-over-IP (AoIP) web-server does not require a password by default, allowing any attacker with the target IP address to connect and compromise the device, potentially pivoting to connected network or hardware devices.

Digigram's PYKO-OUT audio-over-IP (AoIP) web-server does not require a password by default, allowing any attacker with the target IP address to connect and compromise the device, potentially pivoting to connected network or hardware devices.

EPSS

Процентиль: 25%
0.00088
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 9.8
nvd
9 месяцев назад

Digigram's PYKO-OUT audio-over-IP (AoIP) web-server does not require a password by default, allowing any attacker with the target IP address to connect and compromise the device, potentially pivoting to connected network or hardware devices.

EPSS

Процентиль: 25%
0.00088
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-862