Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x2wq-hvxq-c485

Опубликовано: 09 нояб. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 6.8

Описание

A CWE-552: Files or Directories Accessible to External Parties vulnerability exists in Telit Cinterion BGS5, Telit Cinterion EHS5/6/8, Telit Cinterion PDS5/6/8, Telit Cinterion ELS61/81, Telit Cinterion PLS62 that could allow an attacker with physical access to the target system to obtain a read/write access to any files and directories on the targeted system, including hidden files and directories.

A CWE-552: Files or Directories Accessible to External Parties vulnerability exists in Telit Cinterion BGS5, Telit Cinterion EHS5/6/8, Telit Cinterion PDS5/6/8, Telit Cinterion ELS61/81, Telit Cinterion PLS62 that could allow an attacker with physical access to the target system to obtain a read/write access to any files and directories on the targeted system, including hidden files and directories.

EPSS

Процентиль: 13%
0.00044
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-552

Связанные уязвимости

CVSS3: 6.8
nvd
около 2 лет назад

A CWE-552: Files or Directories Accessible to External Parties vulnerability exists in Telit Cinterion BGS5, Telit Cinterion EHS5/6/8, Telit Cinterion PDS5/6/8, Telit Cinterion ELS61/81, Telit Cinterion PLS62 that could allow an attacker with physical access to the target system to obtain a read/write access to any files and directories on the targeted system, including hidden files and directories.

CVSS3: 6.8
fstec
больше 2 лет назад

Уязвимость микропрограммного обеспечения модемов Telit Cinterion, связанная с использованием файлов и каталогов, доступных внешним сторонам, позволяющая нарушителю получить доступ на чтение и запись произвольных файлов(каталогов) в системе

EPSS

Процентиль: 13%
0.00044
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-552