Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rq56-32m2-gfc7

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.9

Описание

A Path Traversal issue was discovered in Schneider Electric Pelco VideoXpert Enterprise all versions prior to 2.1. By sniffing communications, an unauthorized person can execute a directory traversal attack resulting in authentication bypass or session hijack.

A Path Traversal issue was discovered in Schneider Electric Pelco VideoXpert Enterprise all versions prior to 2.1. By sniffing communications, an unauthorized person can execute a directory traversal attack resulting in authentication bypass or session hijack.

EPSS

Процентиль: 67%
0.0053
Низкий

6.9 Medium

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 6.9
nvd
около 8 лет назад

A Path Traversal issue was discovered in Schneider Electric Pelco VideoXpert Enterprise all versions prior to 2.1. By sniffing communications, an unauthorized person can execute a directory traversal attack resulting in authentication bypass or session hijack.

EPSS

Процентиль: 67%
0.0053
Низкий

6.9 Medium

CVSS3

Дефекты

CWE-22