Логотип exploitDog
bind:CVE-2018-6908
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-6908

Количество 2

Количество 2

nvd логотип

CVE-2018-6908

больше 7 лет назад

An authentication bypass vulnerability exists in the Green Electronics RainMachine Mini-8 (2nd Generation) and Touch HD 12 web application allowing an unauthenticated attacker to perform authenticated actions on the device via a 127.0.0.1:port value in the HTTP 'Host' header, as demonstrated by retrieving credentials.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-rpcg-pm3j-2f73

больше 3 лет назад

An authentication bypass vulnerability exists in the Green Electronics RainMachine Mini-8 (2nd Generation) and Touch HD 12 web application allowing an unauthenticated attacker to perform authenticated actions on the device via a 127.0.0.1:port value in the HTTP 'Host' header, as demonstrated by retrieving credentials.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-6908

An authentication bypass vulnerability exists in the Green Electronics RainMachine Mini-8 (2nd Generation) and Touch HD 12 web application allowing an unauthenticated attacker to perform authenticated actions on the device via a 127.0.0.1:port value in the HTTP 'Host' header, as demonstrated by retrieving credentials.

CVSS3: 9.8
4%
Низкий
больше 7 лет назад
github логотип
GHSA-rpcg-pm3j-2f73

An authentication bypass vulnerability exists in the Green Electronics RainMachine Mini-8 (2nd Generation) and Touch HD 12 web application allowing an unauthenticated attacker to perform authenticated actions on the device via a 127.0.0.1:port value in the HTTP 'Host' header, as demonstrated by retrieving credentials.

CVSS3: 9.8
4%
Низкий
больше 3 лет назад

Уязвимостей на страницу