Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vh8r-vpp8-mfq5

Опубликовано: 01 июл. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 10

Описание

An authentication bypass issue via spoofing was discovered in the token-based authentication mechanism that could allow an attacker to carry out an impersonation attack.

This issue affects My Cloud OS 5 devices: before 5.26.202.

An authentication bypass issue via spoofing was discovered in the token-based authentication mechanism that could allow an attacker to carry out an impersonation attack.

This issue affects My Cloud OS 5 devices: before 5.26.202.

EPSS

Процентиль: 23%
0.00074
Низкий

10 Critical

CVSS3

Дефекты

CWE-290

Связанные уязвимости

CVSS3: 10
nvd
больше 2 лет назад

An authentication bypass issue via spoofing was discovered in the token-based authentication mechanism that could allow an attacker to carry out an impersonation attack. This issue affects My Cloud OS 5 devices: before 5.26.202.

EPSS

Процентиль: 23%
0.00074
Низкий

10 Critical

CVSS3

Дефекты

CWE-290