Описание
An unauthenticated remote attacker can run arbitrary commands on the affected devices with high privileges because the authentication for the Node_RED server is not configured by default.
EPSS
Процентиль: 96%
0.1267
Средний
10 Critical
CVSS3
Дефекты
CWE-306
Связанные уязвимости
CVSS3: 10
github
около 1 года назад
An unauthenticated remote attacker can run arbitrary commands on the affected devices with high privileges because the authentication for the Node_RED server is not configured by default.
CVSS3: 10
fstec
около 1 года назад
Уязвимость сервера инструмента визуального программирования Node-RED операционной системы промышленного компьютера Pilz IndustrialPI, позволяющая нарушителю выполнить произвольные команды
EPSS
Процентиль: 96%
0.1267
Средний
10 Critical
CVSS3
Дефекты
CWE-306