Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xgc4-wqm7-7qrj

Опубликовано: 22 дек. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 8.6

Описание

Bentley eB System Management Console applications within Assetwise Integrity Information Server allow an unauthenticated user to view configuration options via a crafted request, leading to information disclosure. This affects eB System management Console before 23.00.02.03 and Assetwise ALIM For Transportation before 23.00.01.25.

Bentley eB System Management Console applications within Assetwise Integrity Information Server allow an unauthenticated user to view configuration options via a crafted request, leading to information disclosure. This affects eB System management Console before 23.00.02.03 and Assetwise ALIM For Transportation before 23.00.01.25.

EPSS

Процентиль: 53%
0.00299
Низкий

8.6 High

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 8.6
nvd
около 2 лет назад

Bentley eB System Management Console applications within Assetwise Integrity Information Server allow an unauthenticated user to view configuration options via a crafted request, leading to information disclosure. This affects eB System management Console before 23.00.02.03 and Assetwise ALIM For Transportation before 23.00.01.25.

EPSS

Процентиль: 53%
0.00299
Низкий

8.6 High

CVSS3

Дефекты

CWE-287