Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w2q4-93g6-j5vm

Опубликовано: 25 июн. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.7
CVSS3: 7.5

Описание

CWE-522 Insufficiently Protected Credentials vulnerability that could cause unauthorized access and exposure of sensitive information when unauthenticated attacker accesses credentials stored within firmware or system files. With this credential an attacker could subsequently compromise the device if they have physical access to the device.

CWE-522 Insufficiently Protected Credentials vulnerability that could cause unauthorized access and exposure of sensitive information when unauthenticated attacker accesses credentials stored within firmware or system files. With this credential an attacker could subsequently compromise the device if they have physical access to the device.

EPSS

Процентиль: 15%
0.0024
Низкий

8.7 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-522

Связанные уязвимости

CVSS3: 7.5
nvd
около 1 месяца назад

CWE-522 Insufficiently Protected Credentials vulnerability that could cause unauthorized access and exposure of sensitive information when unauthenticated attacker accesses credentials stored within firmware or system files. With this credential an attacker could subsequently compromise the device if they have physical access to the device.

CVSS3: 7.5
fstec
около 2 месяцев назад

Уязвимость платформ управления общественными распределительными и передающими сетями Schneider Electric Saitel DR и Schneider Electric EasyLogic T150, связанная с недостаточной защитой регистрационных данных, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 15%
0.0024
Низкий

8.7 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-522