Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xxmw-m6v2-9h47

Опубликовано: 19 дек. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

A reliance on untrusted inputs in a security decision could be exploited by a privileged user to configure the Gallagher Command Centre Diagnostics Service to use less secure communication protocols.

This issue affects: Gallagher Diagnostics Service prior to v1.3.0 (distributed in 9.00.1507(MR1)).

A reliance on untrusted inputs in a security decision could be exploited by a privileged user to configure the Gallagher Command Centre Diagnostics Service to use less secure communication protocols.

This issue affects: Gallagher Diagnostics Service prior to v1.3.0 (distributed in 9.00.1507(MR1)).

EPSS

Процентиль: 25%
0.00083
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-807

Связанные уязвимости

CVSS3: 5.5
nvd
больше 1 года назад

A reliance on untrusted inputs in a security decision could be exploited by a privileged user to configure the Gallagher Command Centre Diagnostics Service to use less secure communication protocols. This issue affects: Gallagher Diagnostics Service prior to v1.3.0 (distributed in 9.00.1507(MR1)).

EPSS

Процентиль: 25%
0.00083
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-807