Логотип exploitDog
bind:CVE-2014-8357
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2014-8357

Количество 2

Количество 2

nvd логотип

CVE-2014-8357

больше 8 лет назад

backupsettings.html in the web administrative portal in Zhone zNID GPON 2426A before S3.0.501 places a session key in a URL, which allows remote attackers to obtain arbitrary user passwords via the sessionKey parameter in a getConfig action to backupsettings.conf.

CVSS3: 8.8
EPSS: Средний
github логотип

GHSA-33rm-chj2-wr75

больше 3 лет назад

backupsettings.html in the web administrative portal in Zhone zNID GPON 2426A before S3.0.501 places a session key in a URL, which allows remote attackers to obtain arbitrary user passwords via the sessionKey parameter in a getConfig action to backupsettings.conf.

CVSS3: 8.8
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2014-8357

backupsettings.html in the web administrative portal in Zhone zNID GPON 2426A before S3.0.501 places a session key in a URL, which allows remote attackers to obtain arbitrary user passwords via the sessionKey parameter in a getConfig action to backupsettings.conf.

CVSS3: 8.8
18%
Средний
больше 8 лет назад
github логотип
GHSA-33rm-chj2-wr75

backupsettings.html in the web administrative portal in Zhone zNID GPON 2426A before S3.0.501 places a session key in a URL, which allows remote attackers to obtain arbitrary user passwords via the sessionKey parameter in a getConfig action to backupsettings.conf.

CVSS3: 8.8
18%
Средний
больше 3 лет назад

Уязвимостей на страницу