Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x44x-r8jq-fjhr

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

RSA EnVision 3.5.0, 3.5.1, 3.5.2, and 3.7.0 does not properly restrict access to unspecified user profile functionality, which allows remote attackers to obtain the administrator password hash and conduct brute force guessing attacks.

RSA EnVision 3.5.0, 3.5.1, 3.5.2, and 3.7.0 does not properly restrict access to unspecified user profile functionality, which allows remote attackers to obtain the administrator password hash and conduct brute force guessing attacks.

EPSS

Процентиль: 68%
0.0056
Низкий

Связанные уязвимости

nvd
больше 16 лет назад

RSA EnVision 3.5.0, 3.5.1, 3.5.2, and 3.7.0 does not properly restrict access to unspecified user profile functionality, which allows remote attackers to obtain the administrator password hash and conduct brute force guessing attacks.

EPSS

Процентиль: 68%
0.0056
Низкий