Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2023-4320

Опубликовано: 14 авг. 2023
Источник: redhat
CVSS3: 7.6
EPSS Низкий

Описание

An arithmetic overflow flaw was found in Satellite when creating a new personal access token. This flaw allows an attacker who uses this arithmetic overflow to create personal access tokens that are valid indefinitely, resulting in damage to the system's integrity.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-613
https://bugzilla.redhat.com/show_bug.cgi?id=2231814satellite: arithmetic overflow in satellite

EPSS

Процентиль: 15%
0.0005
Низкий

7.6 High

CVSS3

Связанные уязвимости

CVSS3: 7.6
nvd
около 2 лет назад

An arithmetic overflow flaw was found in Satellite when creating a new personal access token. This flaw allows an attacker who uses this arithmetic overflow to create personal access tokens that are valid indefinitely, resulting in damage to the system's integrity.

CVSS3: 7.5
github
около 2 лет назад

An arithmetic overflow flaw was found in Satellite when creating a new personal access token. This flaw allows an attacker who uses this arithmetic overflow to create personal access tokens that are valid indefinitely, resulting in damage to the system's integrity.

EPSS

Процентиль: 15%
0.0005
Низкий

7.6 High

CVSS3