Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x32m-hcm8-8xv9

Опубликовано: 29 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.7

Описание

CWE-522 Insufficiently Protected Credentials vulnerability exists that could cause authentication bypass and unauthorized credential modification, potentially leading to compromise of managed devices, when a local privileged attacker leverages weaknesses in the handling and protection of stored credentials within the application.

CWE-522 Insufficiently Protected Credentials vulnerability exists that could cause authentication bypass and unauthorized credential modification, potentially leading to compromise of managed devices, when a local privileged attacker leverages weaknesses in the handling and protection of stored credentials within the application.

EPSS

Процентиль: 2%
0.00117
Низкий

8.7 High

CVSS4

Дефекты

CWE-522

Связанные уязвимости

nvd
3 дня назад

CWE-522 Insufficiently Protected Credentials vulnerability exists that could cause authentication bypass and unauthorized credential modification, potentially leading to compromise of managed devices, when a local privileged attacker leverages weaknesses in the handling and protection of stored credentials within the application.

CVSS3: 7.5
fstec
19 дней назад

Уязвимость программного средства администрирования безопасности Schneider Electric EcoStruxure Cybersecurity Admin Expert (CAE), связанная с недостаточной защитой регистрационных данных, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 2%
0.00117
Низкий

8.7 High

CVSS4

Дефекты

CWE-522