Описание
An issue was discovered in the method push.lite.avtech.com.AvtechLib.GetHttpsResponse in AVTECH EagleEyes Lite 2.0.0, the GetHttpsResponse method transmits sensitive information - including internal server URLs, account IDs, passwords, and device tokens - as plaintext query parameters over HTTPS
EPSS
Процентиль: 9%
0.00032
Низкий
8.8 High
CVSS3
Дефекты
CWE-319
Связанные уязвимости
CVSS3: 8.8
github
5 месяцев назад
An issue was discovered in the method push.lite.avtech.com.AvtechLib.GetHttpsResponse in AVTECH EagleEyes Lite 2.0.0, the GetHttpsResponse method transmits sensitive information - including internal server URLs, account IDs, passwords, and device tokens - as plaintext query parameters over HTTPS
EPSS
Процентиль: 9%
0.00032
Низкий
8.8 High
CVSS3
Дефекты
CWE-319