Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wq9q-jvph-86fj

Опубликовано: 24 июн. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 6

Описание

Kaleris NAVIS N4 ULC (Ultra Light Client) communicates insecurely using zlib-compressed data over HTTP. An attacker capable of observing network traffic between Ultra Light Clients and N4 servers can extract sensitive information, including plaintext credentials.

Kaleris NAVIS N4 ULC (Ultra Light Client) communicates insecurely using zlib-compressed data over HTTP. An attacker capable of observing network traffic between Ultra Light Clients and N4 servers can extract sensitive information, including plaintext credentials.

EPSS

Процентиль: 7%
0.00025
Низкий

6 Medium

CVSS4

Дефекты

CWE-319

Связанные уязвимости

nvd
8 месяцев назад

Kaleris NAVIS N4 ULC (Ultra Light Client) communicates insecurely using zlib-compressed data over HTTP. An attacker capable of observing network traffic between Ultra Light Clients and N4 servers can extract sensitive information, including plaintext credentials.

EPSS

Процентиль: 7%
0.00025
Низкий

6 Medium

CVSS4

Дефекты

CWE-319