Логотип exploitDog
bind:CVE-2019-25242
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-25242

Количество 2

Количество 2

nvd логотип

CVE-2019-25242

около 2 месяцев назад

FaceSentry Access Control System 6.4.8 contains a cross-site request forgery vulnerability that allows attackers to perform administrative actions without user consent. Attackers can craft malicious web pages to change administrator passwords, add new admin users, or open access control doors by tricking authenticated users into loading a specially crafted webpage.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-p43h-75mm-qgfv

около 2 месяцев назад

FaceSentry Access Control System 6.4.8 contains a cross-site request forgery vulnerability that allows attackers to perform administrative actions without user consent. Attackers can craft malicious web pages to change administrator passwords, add new admin users, or open access control doors by tricking authenticated users into loading a specially crafted webpage.

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-25242

FaceSentry Access Control System 6.4.8 contains a cross-site request forgery vulnerability that allows attackers to perform administrative actions without user consent. Attackers can craft malicious web pages to change administrator passwords, add new admin users, or open access control doors by tricking authenticated users into loading a specially crafted webpage.

CVSS3: 4.3
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-p43h-75mm-qgfv

FaceSentry Access Control System 6.4.8 contains a cross-site request forgery vulnerability that allows attackers to perform administrative actions without user consent. Attackers can craft malicious web pages to change administrator passwords, add new admin users, or open access control doors by tricking authenticated users into loading a specially crafted webpage.

CVSS3: 4.3
0%
Низкий
около 2 месяцев назад

Уязвимостей на страницу