Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vw2q-8fmv-fj4f

Опубликовано: 27 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.7
CVSS3: 7.5

Описание

Agiloft Release 28 contains several accounts with default credentials that could allow local privilege escalation. The password hash is known for at least one of the accounts and the credentials could be cracked offline. Users should upgrade to Agiloft Release 30.

Agiloft Release 28 contains several accounts with default credentials that could allow local privilege escalation. The password hash is known for at least one of the accounts and the credentials could be cracked offline. Users should upgrade to Agiloft Release 30.

EPSS

Процентиль: 18%
0.00058
Низкий

8.7 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-1392

Связанные уязвимости

CVSS3: 7.5
nvd
6 месяцев назад

Agiloft Release 28 contains several accounts with default credentials that could allow local privilege escalation. The password hash is known for at least one of the accounts and the credentials could be cracked offline. Users should upgrade to Agiloft Release 30.

EPSS

Процентиль: 18%
0.00058
Низкий

8.7 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-1392