Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wwxr-xf9x-xpj6

Опубликовано: 25 окт. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 9.3
CVSS3: 9.8

Описание

This vulnerability exists in Matrix Door Controller Cosec Vega FAXQ due to improper implementation of session management at the web-based management interface. A remote attacker could exploit this vulnerability by sending a specially crafted http request on the vulnerable device.

Successful exploitation of this vulnerability could allow remote attacker to gain unauthorized access and take complete control of the targeted device.

This vulnerability exists in Matrix Door Controller Cosec Vega FAXQ due to improper implementation of session management at the web-based management interface. A remote attacker could exploit this vulnerability by sending a specially crafted http request on the vulnerable device.

Successful exploitation of this vulnerability could allow remote attacker to gain unauthorized access and take complete control of the targeted device.

EPSS

Процентиль: 78%
0.0114
Низкий

9.3 Critical

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-288

Связанные уязвимости

CVSS3: 9.8
nvd
больше 1 года назад

This vulnerability exists in Matrix Door Controller Cosec Vega FAXQ due to improper implementation of session management at the web-based management interface. A remote attacker could exploit this vulnerability by sending a specially crafted http request on the vulnerable device. Successful exploitation of this vulnerability could allow remote attacker to gain unauthorized access and take complete control of the targeted device.

EPSS

Процентиль: 78%
0.0114
Низкий

9.3 Critical

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-288