Описание
The application sends user credentials as URL parameters instead of POST bodies, making it vulnerable to information gathering.
Ссылки
- Broken Link
- Vendor Advisory
- US Government Resource
- Not Applicable
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:sick:field_analytics:*:*:*:*:*:*:*:*
EPSS
Процентиль: 25%
0.00086
Низкий
5.3 Medium
CVSS3
7.5 High
CVSS3
Дефекты
CWE-598
Связанные уязвимости
CVSS3: 5.3
github
8 месяцев назад
The application sends user credentials as URL parameters instead of POST bodies, making it vulnerable to information gathering.
EPSS
Процентиль: 25%
0.00086
Низкий
5.3 Medium
CVSS3
7.5 High
CVSS3
Дефекты
CWE-598