Логотип exploitDog
bind:CVE-2020-25966
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-25966

Количество 2

Количество 2

nvd логотип

CVE-2020-25966

больше 5 лет назад

Sectona Spectra before 3.4.0 has a vulnerable SOAP API endpoint that leaks sensitive information about the configured assets without proper authentication. This could be used by unauthorized parties to get configured login credentials of the assets via a modified pAccountID value. NOTE: The vendor has indicated this is not a vulnerability and states "This vulnerability occurred due to wrong configuration of system.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-59xf-p9qw-6vmh

больше 3 лет назад

Sectona Spectra before 3.4.0 has a vulnerable SOAP API endpoint that leaks sensitive information about the configured assets without proper authentication. This could be used by unauthorized parties to get configured login credentials of the assets via a modified pAccountID value.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-25966

Sectona Spectra before 3.4.0 has a vulnerable SOAP API endpoint that leaks sensitive information about the configured assets without proper authentication. This could be used by unauthorized parties to get configured login credentials of the assets via a modified pAccountID value. NOTE: The vendor has indicated this is not a vulnerability and states "This vulnerability occurred due to wrong configuration of system.

CVSS3: 7.5
0%
Низкий
больше 5 лет назад
github логотип
GHSA-59xf-p9qw-6vmh

Sectona Spectra before 3.4.0 has a vulnerable SOAP API endpoint that leaks sensitive information about the configured assets without proper authentication. This could be used by unauthorized parties to get configured login credentials of the assets via a modified pAccountID value.

CVSS3: 7.5
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу