Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vxcg-qj63-4mp6

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 3.3

Описание

In CISOfy Lynis 2.x through 2.7.5, the license key can be obtained by looking at the process list when a data upload is being performed. This license can be used to upload data to a central Lynis server. Although no data can be extracted by knowing the license key, it may be possible to upload the data of additional scans.

In CISOfy Lynis 2.x through 2.7.5, the license key can be obtained by looking at the process list when a data upload is being performed. This license can be used to upload data to a central Lynis server. Although no data can be extracted by knowing the license key, it may be possible to upload the data of additional scans.

EPSS

Процентиль: 22%
0.00072
Низкий

3.3 Low

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 3.3
ubuntu
больше 5 лет назад

In CISOfy Lynis 2.x through 2.7.5, the license key can be obtained by looking at the process list when a data upload is being performed. This license can be used to upload data to a central Lynis server. Although no data can be extracted by knowing the license key, it may be possible to upload the data of additional scans.

CVSS3: 3.3
nvd
больше 5 лет назад

In CISOfy Lynis 2.x through 2.7.5, the license key can be obtained by looking at the process list when a data upload is being performed. This license can be used to upload data to a central Lynis server. Although no data can be extracted by knowing the license key, it may be possible to upload the data of additional scans.

CVSS3: 3.3
debian
больше 5 лет назад

In CISOfy Lynis 2.x through 2.7.5, the license key can be obtained by ...

EPSS

Процентиль: 22%
0.00072
Низкий

3.3 Low

CVSS3

Дефекты

CWE-200