Описание
Improper Input Validation of plugin files in Administrator Interface of Secomea GateManager allows a server administrator to inject code into the GateManager interface.
This issue affects:
Secomea GateManager
versions prior to 10.0.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 10.0.622395010 (исключая)
cpe:2.3:a:secomea:gatemanager:*:*:*:*:*:*:*:*
EPSS
Процентиль: 66%
0.00523
Низкий
8.7 High
CVSS3
7.2 High
CVSS3
Дефекты
CWE-20
CWE-20
Связанные уязвимости
CVSS3: 7.2
github
около 3 лет назад
Improper Input Validation of plugin files in Administrator Interface of Secomea GateManager allows a server administrator to inject code into the GateManager interface. This issue affects: Secomea GateManager versions prior to 10.0.
EPSS
Процентиль: 66%
0.00523
Низкий
8.7 High
CVSS3
7.2 High
CVSS3
Дефекты
CWE-20
CWE-20