Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wqx6-ghvg-724j

Опубликовано: 09 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.7

Описание

COMMAX Biometric Access Control System 1.0.0 contains an authentication bypass vulnerability that allows unauthenticated attackers to access sensitive information and circumvent physical controls in smart homes and buildings by exploiting cookie poisoning. Attackers can forge cookies to bypass authentication and disclose sensitive information.

COMMAX Biometric Access Control System 1.0.0 contains an authentication bypass vulnerability that allows unauthenticated attackers to access sensitive information and circumvent physical controls in smart homes and buildings by exploiting cookie poisoning. Attackers can forge cookies to bypass authentication and disclose sensitive information.

EPSS

Процентиль: 71%
0.00694
Низкий

8.7 High

CVSS4

Дефекты

CWE-565

Связанные уязвимости

nvd
2 месяца назад

COMMAX Biometric Access Control System 1.0.0 contains an authentication bypass vulnerability that allows unauthenticated attackers to access sensitive information and circumvent physical controls in smart homes and buildings by exploiting cookie poisoning. Attackers can forge cookies to bypass authentication and disclose sensitive information.

EPSS

Процентиль: 71%
0.00694
Низкий

8.7 High

CVSS4

Дефекты

CWE-565