Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vrp4-mrfp-3j9c

Опубликовано: 14 мая 2024
Источник: github
Github: Не прошло ревью
CVSS4: 6
CVSS3: 5.3

Описание

A vulnerability has been identified in OPUPI0 AMQP/MQTT (All versions < V5.30). The affected devices stores MQTT client passwords without sufficient protection on the devices. An attacker with remote shell access or physical access could retrieve the credentials leading to confidentiality loss.

A vulnerability has been identified in OPUPI0 AMQP/MQTT (All versions < V5.30). The affected devices stores MQTT client passwords without sufficient protection on the devices. An attacker with remote shell access or physical access could retrieve the credentials leading to confidentiality loss.

EPSS

Процентиль: 24%
0.0008
Низкий

6 Medium

CVSS4

5.3 Medium

CVSS3

Дефекты

CWE-312

Связанные уязвимости

CVSS3: 5.3
nvd
больше 1 года назад

A vulnerability has been identified in OPUPI0 AMQP/MQTT (All versions < V5.30). The affected devices stores MQTT client passwords without sufficient protection on the devices. An attacker with remote shell access or physical access could retrieve the credentials leading to confidentiality loss.

CVSS3: 5.3
fstec
больше 1 года назад

Уязвимость микропрограммного обеспечения OPUPI0 процессорных модулей управления Siemens SICAM, позволяющая нарушителю раскрыть защищаемую информацию

EPSS

Процентиль: 24%
0.0008
Низкий

6 Medium

CVSS4

5.3 Medium

CVSS3

Дефекты

CWE-312