Описание
An information disclosure vulnerability exists in the User authentication functionality of WellinTech KingHistorian 35.01.00.05. A specially crafted network packet can lead to a disclosure of sensitive information. An attacker can sniff network traffic to leverage this vulnerability.
Ссылки
- ExploitThird Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:wellintech:kinghistorian:35.01.00.05:*:*:*:*:*:*:*
EPSS
Процентиль: 92%
0.0908
Низкий
7.5 High
CVSS3
Дефекты
CWE-200
CWE-287
Связанные уязвимости
CVSS3: 7.5
github
почти 3 года назад
An information disclosure vulnerability exists in the User authentication functionality of WellinTech KingHistorian 35.01.00.05. A specially crafted network packet can lead to a disclosure of sensitive information. An attacker can sniff network traffic to leverage this vulnerability.
EPSS
Процентиль: 92%
0.0908
Низкий
7.5 High
CVSS3
Дефекты
CWE-200
CWE-287