Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v5w6-658c-5g4v

Опубликовано: 05 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The Browser in IBM Sterling Connect:Direct 1.4 before 1.4.0.11 and 1.5 through 1.5.0.1 does not close pages upon the timeout of a session, which allows physically proximate attackers to obtain sensitive administrative-console information by reading the screen of an unattended workstation.

The Browser in IBM Sterling Connect:Direct 1.4 before 1.4.0.11 and 1.5 through 1.5.0.1 does not close pages upon the timeout of a session, which allows physically proximate attackers to obtain sensitive administrative-console information by reading the screen of an unattended workstation.

EPSS

Процентиль: 19%
0.00061
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
больше 12 лет назад

The Browser in IBM Sterling Connect:Direct 1.4 before 1.4.0.11 and 1.5 through 1.5.0.1 does not close pages upon the timeout of a session, which allows physically proximate attackers to obtain sensitive administrative-console information by reading the screen of an unattended workstation.

EPSS

Процентиль: 19%
0.00061
Низкий

Дефекты

CWE-200