Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-5457

Опубликовано: 05 мар. 2024
Источник: nvd
CVSS3: 7.5
CVSS3: 9.8
EPSS Низкий

Описание

A CWE-1269 “Product Released in Non-Release Configuration” vulnerability in the Django web framework used by the web application (due to the “debug” configuration parameter set to “True”) allows a remote unauthenticated attacker to access critical information and have other unspecified impacts to the confidentiality, integrity, and availability of the application. This issue affects: AiLux imx6 bundle below version imx6_1.0.7-2.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:ailux:imx6:*:*:*:*:*:*:*:*
Версия до 1.0.7-2 (исключая)

EPSS

Процентиль: 33%
0.00132
Низкий

7.5 High

CVSS3

9.8 Critical

CVSS3

Дефекты

CWE-1269
NVD-CWE-Other

Связанные уязвимости

CVSS3: 7.5
github
почти 2 года назад

A CWE-1269 “Product Released in Non-Release Configuration” vulnerability in the Django web framework used by the web application (due to the “debug” configuration parameter set to “True”) allows a remote unauthenticated attacker to access critical information and have other unspecified impacts to the confidentiality, integrity, and availability of the application. This issue affects: AiLux imx6 bundle below version imx6_1.0.7-2.

EPSS

Процентиль: 33%
0.00132
Низкий

7.5 High

CVSS3

9.8 Critical

CVSS3

Дефекты

CWE-1269
NVD-CWE-Other