Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-47872

Опубликовано: 08 авг. 2025
Источник: nvd
CVSS3: 5.8
EPSS Низкий

Описание

The public-facing product registration endpoint server responds differently depending on whether the S/N is valid and unregistered, valid but already registered, or does not exist in the database. Combined with the fact that serial numbers are sequentially assigned, this allows an attacker to gain information on the product registration status of different S/Ns.

EPSS

Процентиль: 11%
0.00037
Низкий

5.8 Medium

CVSS3

Дефекты

CWE-203

Связанные уязвимости

CVSS3: 5.8
github
6 месяцев назад

The public-facing product registration endpoint server responds differently depending on whether the S/N is valid and unregistered, valid but already registered, or does not exist in the database. Combined with the fact that serial numbers are sequentially assigned, this allows an attacker to gain information on the product registration status of different S/Ns.

EPSS

Процентиль: 11%
0.00037
Низкий

5.8 Medium

CVSS3

Дефекты

CWE-203