Описание
A broken authentication vulnerability in 4D SAS 4D Server software v17, v18, v19 R7, and earlier allows attackers to send crafted TCP packets containing requests to perform arbitrary actions.
Ссылки
- Not ApplicableThird Party AdvisoryVDB Entry
- Exploit
- Not ApplicableThird Party AdvisoryVDB Entry
- Exploit
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:4d:server:17:*:*:*:*:*:*:*
cpe:2.3:a:4d:server:18:-:*:*:*:*:*:*
cpe:2.3:a:4d:server:18:r5:*:*:*:*:*:*
cpe:2.3:a:4d:server:19:-:*:*:*:*:*:*
cpe:2.3:a:4d:server:19:r7:*:*:*:*:*:*
EPSS
Процентиль: 7%
0.00027
Низкий
7.5 High
CVSS3
Дефекты
CWE-287
Связанные уязвимости
CVSS3: 7.5
github
больше 2 лет назад
A broken authentication vulnerability in 4D SAS 4D Server software v17, v18, v19 R7, and earlier allows attackers to send crafted TCP packets containing requests to perform arbitrary actions.
EPSS
Процентиль: 7%
0.00027
Низкий
7.5 High
CVSS3
Дефекты
CWE-287