Описание
Tomahawk auth timing attack due to usage of strcmp has been identified in Hiawatha webserver version 11.7 which allows a local attacker to access the management client.
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:hiawatha-webserver:hiawatha:11.7:*:*:*:*:*:*:*
EPSS
Процентиль: 5%
0.00154
Низкий
3.3 Low
CVSS3
4 Medium
CVSS3
Дефекты
NVD-CWE-noinfo
Связанные уязвимости
CVSS3: 3.3
debian
7 месяцев назад
Tomahawk auth timing attack due to usage of `strcmp` has been identifi ...
CVSS3: 4
github
7 месяцев назад
Tomahawk auth timing attack due to usage of `strcmp` has been identified in Hiawatha webserver version 11.7 which allows a local attacker to access the management client.
EPSS
Процентиль: 5%
0.00154
Низкий
3.3 Low
CVSS3
4 Medium
CVSS3
Дефекты
NVD-CWE-noinfo