Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-14728

Опубликовано: 03 июн. 2019
Источник: nvd
CVSS3: 9.8
CVSS2: 7.5
EPSS Средний

Описание

An authentication bypass was found in an unknown area of the SiteOmat source code. All SiteOmat BOS versions are affected, prior to the submission of this exploit. Also, the SiteOmat does not force administrators to switch passwords, leaving SSH and HTTP remote authentication open to public.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:orpak:siteomat:*:*:*:*:*:*:*:*
Версия до 6.4.414.084 (исключая)

EPSS

Процентиль: 93%
0.10781
Средний

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-798

Связанные уязвимости

CVSS3: 9.8
github
больше 3 лет назад

An authentication bypass was found in an unknown area of the SiteOmat source code. All SiteOmat BOS versions are affected, prior to the submission of this exploit. Also, the SiteOmat does not force administrators to switch passwords, leaving SSH and HTTP remote authentication open to public.

EPSS

Процентиль: 93%
0.10781
Средний

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-798