Описание
Walchem Intuition 9 firmware versions prior to v4.21 are missing authentication for some of the API routes of the management web server. This could allow an attacker to download and export sensitive data.
Ссылки
- Third Party AdvisoryUS Government Resource
- Third Party AdvisoryUS Government Resource
Уязвимые конфигурации
Конфигурация 1Версия до 4.21 (исключая)
Одновременно
cpe:2.3:o:walchem:intuition_9_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:walchem:intuition_9:-:*:*:*:*:*:*:*
EPSS
Процентиль: 24%
0.00078
Низкий
7.5 High
CVSS3
Дефекты
CWE-306
Связанные уязвимости
CVSS3: 7.5
github
больше 2 лет назад
Walchem Intuition 9 firmware versions prior to v4.21 are missing authentication for some of the API routes of the management web server. This could allow an attacker to download and export sensitive data.
EPSS
Процентиль: 24%
0.00078
Низкий
7.5 High
CVSS3
Дефекты
CWE-306