Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qr25-x8m6-w7qj

Опубликовано: 27 июн. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

Marco Trevisan discovered that the Ubuntu Advantage Desktop Daemon, before version 1.12, leaks the Pro token to unprivileged users by passing the token as an argument in plaintext.

Marco Trevisan discovered that the Ubuntu Advantage Desktop Daemon, before version 1.12, leaks the Pro token to unprivileged users by passing the token as an argument in plaintext.

EPSS

Процентиль: 5%
0.00022
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-319
CWE-497

Связанные уязвимости

CVSS3: 5.9
ubuntu
больше 1 года назад

Marco Trevisan discovered that the Ubuntu Advantage Desktop Daemon, before version 1.12, leaks the Pro token to unprivileged users by passing the token as an argument in plaintext.

CVSS3: 5.9
nvd
больше 1 года назад

Marco Trevisan discovered that the Ubuntu Advantage Desktop Daemon, before version 1.12, leaks the Pro token to unprivileged users by passing the token as an argument in plaintext.

EPSS

Процентиль: 5%
0.00022
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-319
CWE-497