Описание
Digi Passport Firmware through 1.5.1,1 is affected by a buffer overflow in the function for building the Location header string when an unauthenticated user is redirected to the authentication page.
Ссылки
- ExploitThird Party Advisory
- Release NotesVendor Advisory
- PatchProductVendor Advisory
- ExploitThird Party Advisory
- Release NotesVendor Advisory
- PatchProductVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 1.5.1.1 (включая)
Одновременно
cpe:2.3:o:digi:passport_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:digi:passport:-:*:*:*:*:*:*:*
EPSS
Процентиль: 80%
0.02087
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-787
Связанные уязвимости
CVSS3: 7.5
github
больше 4 лет назад
Digi Passport Firmware through 1.5.1,1 is affected by a buffer overflow in the function for building the Location header string when an unauthenticated user is redirected to the authentication page.
EPSS
Процентиль: 80%
0.02087
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-787