Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rv43-hp4f-hx6x

Опубликовано: 16 окт. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 9.3
CVSS3: 9.8

Описание

Ilevia EVE X1 Server firmware versions ≤ 4.7.18.0.eden contain an execution with unnecessary privileges vulnerability in sync_project.sh that allows an attacker to escalate privileges to root. Ilevia has declined to service this vulnerability, and recommends that customers not expose port 8080 to the internet.

Ilevia EVE X1 Server firmware versions ≤ 4.7.18.0.eden contain an execution with unnecessary privileges vulnerability in sync_project.sh that allows an attacker to escalate privileges to root. Ilevia has declined to service this vulnerability, and recommends that customers not expose port 8080 to the internet.

EPSS

Процентиль: 32%
0.00125
Низкий

9.3 Critical

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-250

Связанные уязвимости

CVSS3: 9.8
nvd
4 месяца назад

Ilevia EVE X1 Server firmware versions ≤ 4.7.18.0.eden contain an execution with unnecessary privileges vulnerability in sync_project.sh that allows an attacker to escalate privileges to root. Ilevia has declined to service this vulnerability, and recommends that customers not expose port 8080 to the internet.

EPSS

Процентиль: 32%
0.00125
Низкий

9.3 Critical

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-250