Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-4320

Опубликовано: 18 дек. 2023
Источник: nvd
CVSS3: 7.6
CVSS3: 7.5
EPSS Низкий

Описание

An arithmetic overflow flaw was found in Satellite when creating a new personal access token. This flaw allows an attacker who uses this arithmetic overflow to create personal access tokens that are valid indefinitely, resulting in damage to the system's integrity.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:redhat:satellite:*:*:*:*:*:*:*:*
Версия до 6.13 (исключая)

EPSS

Процентиль: 15%
0.0005
Низкий

7.6 High

CVSS3

7.5 High

CVSS3

Дефекты

CWE-613
CWE-613

Связанные уязвимости

CVSS3: 7.6
redhat
больше 2 лет назад

An arithmetic overflow flaw was found in Satellite when creating a new personal access token. This flaw allows an attacker who uses this arithmetic overflow to create personal access tokens that are valid indefinitely, resulting in damage to the system's integrity.

CVSS3: 7.5
github
около 2 лет назад

An arithmetic overflow flaw was found in Satellite when creating a new personal access token. This flaw allows an attacker who uses this arithmetic overflow to create personal access tokens that are valid indefinitely, resulting in damage to the system's integrity.

EPSS

Процентиль: 15%
0.0005
Низкий

7.6 High

CVSS3

7.5 High

CVSS3

Дефекты

CWE-613
CWE-613