Описание
GeoVision GV-LPC2211 V1.13 fails to enforce WS-Security UsernameToken freshness or nonce reuse protection, allowing a captured PasswordDigest token to be replayed for subsequent ONVIF operations.
EPSS
Процентиль: 19%
0.00268
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-294
Связанные уязвимости
CVSS3: 9.8
github
14 дней назад
GeoVision GV-LPC2211 V1.13 fails to enforce WS-Security UsernameToken freshness or nonce reuse protection, allowing a captured PasswordDigest token to be replayed for subsequent ONVIF operations.
EPSS
Процентиль: 19%
0.00268
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-294