Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xpwg-9vrv-hq2j

Опубликовано: 05 авг. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 9.3
CVSS3: 9.1

Описание

A Plaintext Storage of a Password vulnerability in ebooknote function in Hamastar MeetingHub Paperless Meetings 2021 allows remote attackers to obtain the other users’ credentials and gain access to the product via an XML file.

A Plaintext Storage of a Password vulnerability in ebooknote function in Hamastar MeetingHub Paperless Meetings 2021 allows remote attackers to obtain the other users’ credentials and gain access to the product via an XML file.

EPSS

Процентиль: 35%
0.00146
Низкий

9.3 Critical

CVSS4

9.1 Critical

CVSS3

Дефекты

CWE-256
CWE-522

Связанные уязвимости

CVSS3: 9.1
nvd
больше 1 года назад

A Plaintext Storage of a Password vulnerability in ebooknote function in Hamastar MeetingHub Paperless Meetings 2021 allows remote attackers to obtain the other users’ credentials and gain access to the product via an XML file.

EPSS

Процентиль: 35%
0.00146
Низкий

9.3 Critical

CVSS4

9.1 Critical

CVSS3

Дефекты

CWE-256
CWE-522