Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xwch-5xjc-3j47

Опубликовано: 18 янв. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Dell EMC SCG Policy Manager, versions from 5.10 to 5.12, contain(s) a contain a Hard-coded Cryptographic Key vulnerability. An attacker with the knowledge of the hard-coded sensitive information, could potentially exploit this vulnerability to login to the system to gain LDAP user privileges.

Dell EMC SCG Policy Manager, versions from 5.10 to 5.12, contain(s) a contain a Hard-coded Cryptographic Key vulnerability. An attacker with the knowledge of the hard-coded sensitive information, could potentially exploit this vulnerability to login to the system to gain LDAP user privileges.

EPSS

Процентиль: 18%
0.00057
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-321
CWE-798

Связанные уязвимости

CVSS3: 8
nvd
больше 2 лет назад

Dell EMC SCG Policy Manager, versions from 5.10 to 5.12, contain(s) a contain a Hard-coded Cryptographic Key vulnerability.  An attacker with the knowledge of the hard-coded sensitive information, could potentially exploit this vulnerability to login to the system to gain LDAP user privileges.

CVSS3: 8
fstec
почти 3 года назад

Уязвимость средства управления доступом Policy Manager программного обеспечения для удаленной ИТ-поддержки и мониторинга Dell Secure Connect Gateway (SCG), позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 18%
0.00057
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-321
CWE-798