Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rqp9-whcw-xww5

Опубликовано: 16 окт. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

In Red Lion Europe mbCONNECT24 and mymbCONNECT24 and Helmholz myREX24 and myREX24.virtual up to and including 2.14.2 an improperly implemented access validation allows an authenticated, low privileged attacker to gain read access to limited, non-critical device information in his account he should not have access to.

In Red Lion Europe mbCONNECT24 and mymbCONNECT24 and Helmholz myREX24 and myREX24.virtual up to and including 2.14.2 an improperly implemented access validation allows an authenticated, low privileged attacker to gain read access to limited, non-critical device information in his account he should not have access to.

EPSS

Процентиль: 29%
0.00105
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 4.3
nvd
больше 2 лет назад

In Red Lion Europe mbCONNECT24 and mymbCONNECT24 and Helmholz myREX24 and myREX24.virtual up to and including 2.14.2 an improperly implemented access validation allows an authenticated, low privileged attacker to gain read access to limited, non-critical device information in his account he should not have access to.

EPSS

Процентиль: 29%
0.00105
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-269