Описание
HCL MyCloud is affected by Improper Access Control - an unauthenticated privilege escalation vulnerability which may lead to information disclosure and potential for Server-Side Request Forgery (SSRF) and Denial of Service(DOS) attacks from unauthenticated users.
Ссылки
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:hcltech:dryice_mycloud:10.8.1:*:*:*:*:*:*:*
EPSS
Процентиль: 37%
0.00157
Низкий
5.3 Medium
CVSS3
9.1 Critical
CVSS3
Дефекты
CWE-269
CWE-918
Связанные уязвимости
CVSS3: 5.3
github
12 месяцев назад
HCL MyCloud is affected by Improper Access Control - an unauthenticated privilege escalation vulnerability which may lead to information disclosure and potential for Server-Side Request Forgery (SSRF) and Denial of Service(DOS) attacks from unauthenticated users.
EPSS
Процентиль: 37%
0.00157
Низкий
5.3 Medium
CVSS3
9.1 Critical
CVSS3
Дефекты
CWE-269
CWE-918