Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rp4p-25j3-mhw4

Опубликовано: 03 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

It was observed that while login into Business-central console, HTTP request discloses sensitive information like username and password when intercepted using some tool like burp suite etc.

It was observed that while login into Business-central console, HTTP request discloses sensitive information like username and password when intercepted using some tool like burp suite etc.

EPSS

Процентиль: 50%
0.0027
Низкий

7.5 High

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 5.4
redhat
больше 4 лет назад

It was observed that while login into Business-central console, HTTP request discloses sensitive information like username and password when intercepted using some tool like burp suite etc.

CVSS3: 7.5
nvd
почти 4 года назад

It was observed that while login into Business-central console, HTTP request discloses sensitive information like username and password when intercepted using some tool like burp suite etc.

EPSS

Процентиль: 50%
0.0027
Низкий

7.5 High

CVSS3

Дефекты

CWE-200