Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-4096

Опубликовано: 19 сент. 2023
Источник: nvd
CVSS3: 8.6
CVSS3: 8.2
EPSS Низкий

Описание

Weak password recovery mechanism vulnerability in Fujitsu Arconte Áurea version 1.5.0.0, which exploitation could allow an attacker to perform a brute force attack on the emailed PIN number in order to change the password of a legitimate user.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:fujitsu:arconte_aurea:1.5.0.0:*:*:*:*:*:*:*

EPSS

Процентиль: 31%
0.00115
Низкий

8.6 High

CVSS3

8.2 High

CVSS3

Дефекты

CWE-640

Связанные уязвимости

CVSS3: 8.6
github
больше 2 лет назад

Weak password recovery mechanism vulnerability in Fujitsu Arconte Áurea version 1.5.0.0, which exploitation could allow an attacker to perform a brute force attack on the emailed PIN number in order to change the password of a legitimate user.

EPSS

Процентиль: 31%
0.00115
Низкий

8.6 High

CVSS3

8.2 High

CVSS3

Дефекты

CWE-640