Описание
A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V2.0). The affected application does not properly handle cacheable HTTP responses in the web service. This could allow an attacker to read and modify data stored in the local cache.
Ссылки
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2.0 (исключая)
cpe:2.3:a:siemens:sinec_traffic_analyzer:*:*:*:*:*:*:*:*
EPSS
Процентиль: 57%
0.00355
Низкий
4.8 Medium
CVSS3
6.5 Medium
CVSS3
Дефекты
CWE-524
NVD-CWE-Other
Связанные уязвимости
CVSS3: 4.8
github
больше 1 года назад
A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V2.0). The affected application does not properly handle cacheable HTTP responses in the web service. This could allow an attacker to read and modify data stored in the local cache.
EPSS
Процентиль: 57%
0.00355
Низкий
4.8 Medium
CVSS3
6.5 Medium
CVSS3
Дефекты
CWE-524
NVD-CWE-Other