Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xjqw-7vwm-ppm5

Опубликовано: 10 мар. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 7
CVSS3: 6.5

Описание

CWE-502: Deserialization of untrusted data vulnerability exists that could lead to loss of confidentiality, integrity and potential remote code execution on workstation when an admin authenticated user opens a malicious project file.

CWE-502: Deserialization of untrusted data vulnerability exists that could lead to loss of confidentiality, integrity and potential remote code execution on workstation when an admin authenticated user opens a malicious project file.

EPSS

Процентиль: 23%
0.00315
Низкий

7 High

CVSS4

6.5 Medium

CVSS3

Дефекты

CWE-502

Связанные уязвимости

CVSS3: 6.5
nvd
5 месяцев назад

CWE-502: Deserialization of untrusted data vulnerability exists that could lead to loss of confidentiality, integrity and potential remote code execution on workstation when an admin authenticated user opens a malicious project file.

CVSS3: 6.5
fstec
5 месяцев назад

Уязвимость микропрограммного обеспечения распределённой системы управления EcoStruxure Foxboro DCS, связанная с недостатками механизма десериализации, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 23%
0.00315
Низкий

7 High

CVSS4

6.5 Medium

CVSS3

Дефекты

CWE-502