Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xhgx-qjr6-8ff6

Опубликовано: 12 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.2

Описание

An Access Control vulnerability exists in KevinLAB Inc Building Energy Management System 4ST BEMS 1.0.0 due to an undocumented backdoor account. A malicious user can log in using the backdor account with admin highest privileges and obtain system control.

An Access Control vulnerability exists in KevinLAB Inc Building Energy Management System 4ST BEMS 1.0.0 due to an undocumented backdoor account. A malicious user can log in using the backdor account with admin highest privileges and obtain system control.

EPSS

Процентиль: 90%
0.05562
Низкий

7.2 High

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 7.2
nvd
почти 4 года назад

An Access Control vulnerability exists in KevinLAB Inc Building Energy Management System 4ST BEMS 1.0.0 due to an undocumented backdoor account. A malicious user can log in using the backdor account with admin highest privileges and obtain system control.

EPSS

Процентиль: 90%
0.05562
Низкий

7.2 High

CVSS3

Дефекты

CWE-863