Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vghq-cm29-427c

Опубликовано: 05 нояб. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

HCL iAutomate v6.5.1 and v6.5.2 is susceptible to a sensitive information disclosure. An HTTP GET method is used to process a request and includes sensitive information in the query string of that request. An attacker could potentially access information or resources they were not intended to see.

HCL iAutomate v6.5.1 and v6.5.2 is susceptible to a sensitive information disclosure. An HTTP GET method is used to process a request and includes sensitive information in the query string of that request. An attacker could potentially access information or resources they were not intended to see.

EPSS

Процентиль: 13%
0.00043
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-598

Связанные уязвимости

CVSS3: 5.4
nvd
3 месяца назад

HCL iAutomate v6.5.1 and v6.5.2 is susceptible to a sensitive information disclosure. An HTTP GET method is used to process a request and includes sensitive information in the query string of that request. An attacker could potentially access information or resources they were not intended to see.

EPSS

Процентиль: 13%
0.00043
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-598