Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-33610

Опубликовано: 26 нояб. 2024
Источник: nvd
CVSS3: 9.1
EPSS Средний

Описание

"sessionlist.html" and "sys_trayentryreboot.html" are accessible with no authentication. "sessionlist.html" provides logged-in users' session information including session cookies, and "sys_trayentryreboot.html" allows to reboot the device. As for the details of affected product names, model numbers, and versions, refer to the information provided by the respective vendors listed under [References].

EPSS

Процентиль: 98%
0.59434
Средний

9.1 Critical

CVSS3

Дефекты

CWE-288

Связанные уязвимости

CVSS3: 9.1
github
около 1 года назад

"sessionlist.html" and "sys_trayentryreboot.html" are accessible with no authentication. "sessionlist.html" provides logged-in users' session information including session cookies, and "sys_trayentryreboot.html" allows to reboot the device. As for the details of affected product names, model numbers, and versions, refer to the information provided by the respective vendors listed under [References].

EPSS

Процентиль: 98%
0.59434
Средний

9.1 Critical

CVSS3

Дефекты

CWE-288